NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67604 | CVE-2005-1886 | Cross-site scripting (XSS) vulnerability in view.php in YaPiG 0.92b, 0.93u and 0.94u allows remote attackers to inject arbitrary web script or HTML via (1) the phid parameter or (2) unknown parameters when posting a new comment. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
2324 | CVE-2008-2408 | Heap-based buffer overflow in the XML parsing functionality in talk.dll in Cerulean Studios Trillian Pro before 3.1.10.0 allows remote attackers to execute arbitrary code via a malformed attribute in an IMG tag. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View | |
67860 | CVE-2005-2156 | SQL injection vulnerability in news.php in PHPNews 1.2.5 allows remote attackers to execute arbitrary SQL commands via the prevnext parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
2580 | CVE-2008-2682 | _RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pages via certain modified cookies, probably including (1) cUserRole, (2) cUserName, and (3) cUserID. | 2 | 7.5 | High | 2017-01-03 | 2008-09-10 | View | |
2836 | CVE-2008-2942 | Directory traversal vulnerability in patch.py in Mercurial 1.0.1 allows user-assisted attackers to modify arbitrary files via ".." (dot dot) sequences in a patch file. | 2 | 6.8 | Medium | 2017-01-03 | 2012-11-26 | View |
Page 1685 of 17672, showing 5 records out of 88360 total, starting on record 8421, ending on 8425