NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3321 | CVE-2008-3440 | Sun Java 1.6.0_03 and earlier versions, and possibly later versions, does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Trojan horse update, as demonstrated by evilgrade and DNS cache poisoning. | 2 | 7.5 | High | 2017-01-03 | 2008-09-10 | View | |
3577 | CVE-2008-3712 | Multiple cross-site scripting (XSS) vulnerabilities in Mambo 4.6.2 and 4.6.5, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) query string to mambots/editors/mostlyce/jscripts/tiny_mce/filemanager/connectors/php/connector.php and the (2) mosConfig_sitename parameter to administrator/popups/index3pop.php. | 2 | 2.6 | Low | 2017-01-03 | 2009-01-29 | View | |
69113 | CVE-2005-3452 | Unspecified vulnerability in Web Cache in Oracle Application Server 1.0 up to 9.0.4.2 has unknown impact and attack vectors, as identified by Oracle Vuln# AS13. | 2 | 10 | High | 2017-01-03 | 2012-10-22 | View | |
3833 | CVE-2008-3971 | Heap-based buffer overflow in the open_man_file function in callbacks.c in gmanedit 0.4.1 allows remote attackers to execute arbitrary code via a crafted man page, which is not properly handled during utf8 conversion. NOTE: another overflow was reported using a configuration file, but that vector does not have a scenario that crosses privilege boundaries. | 2 | 9.3 | High | 2017-01-03 | 2009-08-19 | View | |
69369 | CVE-2005-3731 | Unspecified vulnerability in yaSSL before 1.0.6 has unknown impact and attack vectors, related to "certificate chain processing." | 2 | 10 | High | 2017-01-03 | 2008-09-05 | View |
Page 17204 of 17672, showing 5 records out of 88360 total, starting on record 86016, ending on 86020