NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1212 | CVE-2008-1253 | Cross-site scripting (XSS) vulnerability in cgi-bin/webcm on the D-Link DSL-G604T router allows remote attackers to inject arbitrary web script or HTML via the var:category parameter, as demonstrated by a request for advanced/portforw.htm on the fwan page. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
1468 | CVE-2008-1524 | The SNMP service on ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), has "public" as its default community for both (1) read and (2) write operations, which allows remote attackers to perform administrative actions via SNMP, as demonstrated by reading the Dynamic DNS service password or inserting an XSS sequence into the system.sysName.0 variable, which is displayed on the System Status page. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
67260 | CVE-2005-1522 | The imap4d server for GNU Mailutils 0.5 and 0.6, and other versions before 0.6.90, allows authenticated remote users to cause a denial of service (CPU consumption) via a large range value in the FETCH command. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
67516 | CVE-2005-1792 | Memory leak in Windows Management Instrumentation (WMI) service allows attackers to cause a denial of service (memory consumption and crash) by creating security contexts more quickly than they can be cleared from the RPC cache. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2748 | CVE-2008-2854 | Multiple PHP remote file inclusion vulnerabilities in Orlando CMS 0.6 allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[preloc] parameter to (1) modules/core/logger/init.php and (2) AJAX/newscat.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 17229 of 17672, showing 5 records out of 88360 total, starting on record 86141, ending on 86145