NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2586 | CVE-2008-2688 | SQL injection vulnerability in pilot.asp in ASPilot Pilot Cart 7.3 allows remote attackers to execute arbitrary SQL commands via the article parameter in a kb action. | 2 | 7.5 | High | 2017-01-03 | 2008-09-10 | View | |
68122 | CVE-2005-2431 | The (1) lost password and (2) account pending features in GForge 4.5 do not properly set a limit on the number of e-mails sent to an e-mail address, which allows remote attackers to send a large number of messages to arbitrary e-mail addresses (aka mail bomb). | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
2842 | CVE-2008-2948 | Cross-domain vulnerability in Microsoft Internet Explorer 7 and 8 allows remote attackers to change the location property of a frame via the Object data type, and use a frame from a different domain to observe domain-independent events, as demonstrated by observing onkeydown events with caballero-listener. NOTE: according to Microsoft, this is a duplicate of CVE-2008-2947, possibly a different attack vector. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
68378 | CVE-2005-2689 | Multiple cross-site scripting (XSS) vulnerabilities in PostNuke 0.760-RC4b allows remote attackers to inject arbitrary web script or HTML via (1) the moderate parameter to the Comments module or (2) htmltext parameter to html/user.php. | 2 | 2.6 | Low | 2017-01-03 | 2008-09-05 | View | |
3098 | CVE-2008-3215 | libclamav/petite.c in ClamAV before 0.93.3 allows remote attackers to cause a denial of service via a malformed Petite file that triggers an out-of-bounds memory access. NOTE: this issue exists because of an incomplete fix for CVE-2008-2713. | 2 | 5 | Medium | 2017-01-03 | 2012-09-12 | View |
Page 1769 of 17672, showing 5 records out of 88360 total, starting on record 8841, ending on 8845