NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6129 | CVE-2008-6398 | sng_regress in SNG 1.0.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/recompiled$$.png, (2) /tmp/decompiled$$.sng, and (3) /tmp/canonicalized$$.sng temporary files. | 2 | 6.9 | Medium | 2017-01-03 | 2009-07-22 | View | |
6385 | CVE-2008-6654 | Cross-site scripting (XSS) vulnerability in search_results.php in InfoBiz Server allows remote attackers to inject arbitrary web script or HTML via the keywords parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-07 | View | |
6641 | CVE-2008-6910 | Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, does not use timeouts for signed requests, which allows remote attackers to impersonate other users and gain privileges via a replay attack that sends the same request. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
6897 | CVE-2008-7166 | Buffer overflow in the web interface in BitTorrent 6.0.1 (build 7859) and earlier, and uTorrent 1.7.6 (build 7859) and earlier, allows remote attackers to cause a denial of service (memory consumption and crash) via a crafted Range header. NOTE: this is probably a different vulnerability than CVE-2008-0071 and CVE-2008-0364. | 2 | 5 | Medium | 2017-01-03 | 2009-09-09 | View | |
7153 | CVE-2011-0014 | ssl/t1_lib.c in OpenSSL 0.9.8h through 0.9.8q and 1.0.0 through 1.0.0c allows remote attackers to cause a denial of service (crash), and possibly obtain sensitive information in applications that use OpenSSL, via a malformed ClientHello handshake message that triggers an out-of-bounds memory access, aka "OCSP stapling vulnerability." | 2 | 5 | Medium | 2017-01-07 | 2016-08-22 | View |
Page 16775 of 17672, showing 5 records out of 88360 total, starting on record 83871, ending on 83875