NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3595 | CVE-2008-3730 | Cross-site scripting (XSS) vulnerability in Nordicwind Document Management System (NOAH) before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-18 | View | |
3594 | CVE-2008-3729 | Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 allows remote attackers to bypass authentication and obtain administrative access via a direct request with (1) an IsAdmin=true cookie value or (2) no cookie. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
3593 | CVE-2008-3728 | Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to determine the installation path, IP addresses, and error messages via direct requests to files under LOG/. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
3592 | CVE-2008-3727 | Directory traversal vulnerability in Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 allows remote attackers to read arbitrary files via a .. (dot dot) in the URI. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View | |
3591 | CVE-2008-3726 | Cross-site scripting (XSS) vulnerability in Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 allows remote attackers to inject arbitrary web script or HTML via the URI. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 16954 of 17672, showing 5 records out of 88360 total, starting on record 84766, ending on 84770