NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
525 | CVE-2008-0550 | Off-by-one error in Steamcast 0.9.75 and earlier allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a certain HTTP request that leads to a buffer overflow, as demonstrated by a long User-Agent header. | 2 | 10 | High | 2017-01-03 | 2008-09-05 | View | |
524 | CVE-2008-0549 | Integer overflow in the OggHeaderParse function in Steamcast 0.9.75 and earlier allows remote authenticated users to cause a denial of service (daemon crash) via a long Ogg tag. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
523 | CVE-2008-0548 | Steamcast 0.9.75 and earlier allows remote attackers to cause a denial of service (daemon crash) via a large integer in the Content-Length HTTP header, which triggers a NULL dereference when malloc fails. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
522 | CVE-2008-0547 | Cross-site scripting (XSS) vulnerability in admin/utilities_ConfigHelp.asp in CandyPress (CP) 4.1.1.26, and probably earlier 4.x and 3.x versions, allows remote attackers to inject arbitrary web script or HTML via the helpfield parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-20 | View | |
521 | CVE-2008-0546 | Multiple SQL injection vulnerabilities in CandyPress (CP) 4.1.1.26, and earlier 4.1.x versions, allow remote attackers to execute arbitrary SQL commands via the (1) idProduct and (2) options parameters to (a) ajax/ajax_optInventory.asp, or the (2) recid parameter to (b) ajax/ajax_getBrands.asp. | 2 | 7.5 | High | 2017-01-03 | 2009-08-20 | View |
Page 17568 of 17672, showing 5 records out of 88360 total, starting on record 87836, ending on 87840