NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3070 | CVE-2008-3187 | zypp-refresh-patches in zypper in SUSE openSUSE 10.2, 10.3, and 11.0 does not ask the user before accepting repository keys, which allows remote repositories to cause a denial of service (package data corruption) via a spoofed key. | 2 | 5 | Medium | 2017-01-03 | 2012-11-26 | View | |
68862 | CVE-2005-3200 | Multiple cross-site scripting (XSS) vulnerabilities in Utopia News Pro (UNP) 1.1.3 and 1.1.4 allow remote attackers to inject arbitrary web script or HTML via (1) the sitetitle parameter in header.php and (2) the version and (3) query_count parameters in footer.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
3582 | CVE-2008-3717 | Harmoni before 1.6.0 does not require administrative privileges to list (1) user names or (2) asset ids, which allows remote attackers to obtain sensitive information. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
3838 | CVE-2008-3976 | Unspecified vulnerability in the Oracle Spatial component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2009-3413 and CVE-2009-3414. | 2 | 5.5 | Medium | 2017-01-03 | 2016-11-23 | View | |
69374 | CVE-2005-3736 | Multiple cross-site scripting (XSS) vulnerabilities in e-Quick Cart allow remote attackers to inject arbitrary web script or HTML via the (1) strgifttoname parameter in shopgift.asp, (2) strfirstname parameter in shopmaillist.asp, (3) strpid parameter in shopprojectlogin.asp, and (4) Custname parameter in shoptellafriend.asp. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 17605 of 17672, showing 5 records out of 88360 total, starting on record 88021, ending on 88025