NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
81129 | CVE-2002-2178 | Cross-site scripting (XSS) vulnerability in article.php module for phpWebSite 0.8.3 allows remote attackers to execute arbitrary Javascript script via the sid parameter, as demonstrated using an IMG tag. | 2 | 4.3 | Medium | 2017-01-05 | 2008-09-05 | View | |
59113 | CVE-2006-0374 | Advantage Century Telecommunication (ACT) P202S IP Phone 1.01.21 running firmware 1.1.21 has multiple undocumented ports available, which (1) might allow remote attackers to obtain sensitive information, such as memory contents and internal operating-system data, by directly accessing the VxWorks WDB remote debugging ONCRPC (aka wdbrpc) on UDP 17185, (2) reflect network data using echo (TCP 7), or (3) gain access without authentication using rlogin (TCP 513). | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
61929 | CVE-2006-3250 | Heap-based buffer overflow in Windows Live Messenger 8.0 allows user-assisted attackers to execute arbitrary code via a crafted Contact List (.ctt) file, which triggers the overflow when it is imported by the user. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
234 | CVE-2008-0249 | PHP Webquest 2.6 allows remote attackers to retrieve database credentials via a direct request to admin/backup_phpwebquest.php, which leaks the credentials in an error message if a call to /usr/bin/mysqldump fails. NOTE: this might only be an issue in limited environments. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
1002 | CVE-2008-1041 | Cross-site scripting (XSS) vulnerability in mwhois.php in Matt Wilson Matt"s Whois (MWhois) allows remote attackers to inject arbitrary web script or HTML via the domain parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 17508 of 17672, showing 5 records out of 88360 total, starting on record 87536, ending on 87540