NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4610 | CVE-2008-4796 | The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-snoopy, (3) mahara, (4) mediamate, (5) opendb, (6) pixelpost, and possibly other products, allows remote attackers to execute arbitrary commands via shell metacharacters in https URLs. | 2 | 10 | High | 2017-01-03 | 2016-12-19 | View | |
4609 | CVE-2008-4795 | The links panel in Opera before 9.62 processes Javascript within the context of the "outermost page" of a frame, which allows remote attackers to inject arbitrary web script or HTML via cross-site scripting (XSS) attacks. | 2 | 4.3 | Medium | 2017-01-03 | 2009-02-26 | View | |
4608 | CVE-2008-4794 | Opera before 9.62 allows remote attackers to execute arbitrary commands via the History Search results page, a different vulnerability than CVE-2008-4696. | 2 | 9.3 | High | 2017-01-03 | 2009-08-11 | View | |
4607 | CVE-2008-4793 | The node module API in Drupal 5.x before 5.11 allows remote attackers to bypass node validation and have unspecified other impact via unknown vectors related to contributed modules. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
4606 | CVE-2008-4792 | The core BlogAPI module in Drupal 5.x before 5.11 and 6.x before 6.5 does not properly validate unspecified content fields of an internal Drupal form, which allows remote authenticated users to bypass intended access restrictions via modified field values. | 2 | 6 | Medium | 2017-01-03 | 2009-01-28 | View |
Page 16751 of 17672, showing 5 records out of 88360 total, starting on record 83751, ending on 83755