NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1530 | CVE-2008-1586 | ImageIO in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allow remote attackers to cause a denial of service (memory consumption and device reset) via a crafted TIFF image. | 2 | 7.1 | High | 2017-01-03 | 2011-03-07 | View | |
67066 | CVE-2005-1327 | Cross-site scripting (XSS) vulnerability in pms.php for Woltlab Burning Board 2.3.1 PL2 and earlier allows remote attackers to inject arbitrary web script or HTML via the folderid parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
1786 | CVE-2008-1846 | The default configuration of SAP NetWeaver before 7.0 SP15 does not enable the "Always Use Secure HTML Editor" (aka Editor Security or Secure Editing) parameter, which allows remote attackers to conduct cross-site scripting (XSS) attacks by entering feedback for a file. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
67322 | CVE-2005-1595 | CodeThat ShoppingCart 1.3.1 stores config.ini under the web root, which allows remote attackers to obtain sensitive information via a direct request. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2042 | CVE-2008-2108 | The GENERATE_SEED macro in PHP 4.x before 4.4.8 and 5.x before 5.2.5, when running on 64-bit systems, performs a multiplication that generates a portion of zero bits during conversion due to insufficient precision, which produces 24 bits of entropy and simplifies brute force attacks against protection mechanisms that use the rand and mt_rand functions. | 2 | 7.5 | High | 2017-01-03 | 2012-10-30 | View |
Page 16918 of 17672, showing 5 records out of 88360 total, starting on record 84586, ending on 84590