NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3327 | CVE-2008-3446 | Directory traversal vulnerability in inc/wysiwyg.php in LetterIt 2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
3583 | CVE-2008-3718 | Multiple SQL injection vulnerabilities in cyberBB 0.6 allow remote authenticated users to execute arbitrary SQL commands via the (1) id parameter to show_topic.php and the (2) user parameter to profile.php. | 2 | 6.5 | Medium | 2017-01-03 | 2009-01-29 | View | |
3839 | CVE-2008-3977 | Unspecified vulnerability in the Oracle Portal component in Oracle Application Server 9.0.4.3 and 10.1.2.3 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2008-3975. | 2 | 5 | Medium | 2017-01-03 | 2016-11-23 | View | |
69375 | CVE-2005-3737 | Buffer overflow in the SVG importer (style.cpp) of inkscape 0.41 through 0.42.2 might allow remote attackers to execute arbitrary code via a SVG file with long CSS style property values. | 2 | 5.1 | Medium | 2017-01-03 | 2011-03-07 | View | |
4095 | CVE-2008-4245 | The Admin Control Panel in Rianxosencabos CMS 0.9 does not require administrator privileges, which allows remote authenticated users to (1) change a user"s privileges, (2) delete a user account, or perform unspecified other administrative actions via vectors involving an admin lista action to the default URI, possibly related to useradmin.php. | 2 | 6.5 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 17639 of 17672, showing 5 records out of 88360 total, starting on record 88191, ending on 88195