NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1255 | CVE-2008-1296 | Multiple cross-site scripting (XSS) vulnerabilities in EncapsGallery 1.11.2 allow remote attackers to inject arbitrary web script or HTML via the file parameter to (1) watermark.php and (2) catalog_watermark.php in core/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
1254 | CVE-2008-1295 | SQL injection vulnerability in archives.php in Gregory Kokanosky (aka Greg"s Place) phpMyNewsletter 0.8 beta 5 and earlier allows remote attackers to execute arbitrary SQL commands via the msg_id parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
1253 | CVE-2008-1294 | Linux kernel 2.6.17, and other versions before 2.6.22, does not check when a user attempts to set RLIMIT_CPU to 0 until after the change is made, which allows local users to bypass intended resource limits. | 2 | 2.1 | Low | 2017-01-03 | 2010-08-21 | View | |
1252 | CVE-2008-1293 | ldm in Linux Terminal Server Project (LTSP) 0.99 and 2 passes the -ac option to the X server on each LTSP client, which allows remote attackers to connect to this server via TCP port 6006 (aka display :6). | 2 | 4.8 | Medium | 2017-01-03 | 2009-02-21 | View | |
1251 | CVE-2008-1292 | ViewVC before 1.0.5 provides revision metadata without properly checking whether access was intended, which allows remote attackers to obtain sensitive information by reading (1) forbidden pathnames in the revision view, (2) log history that can only be reached by traversing a forbidden object, or (3) forbidden diff view path parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-20 | View |
Page 17422 of 17672, showing 5 records out of 88360 total, starting on record 87106, ending on 87110