NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6179 | CVE-2008-6448 | Cross-site scripting (XSS) vulnerability in install.cgi in SKYARC System MTCMS WYSIWYG Editor allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-20 | View | |
6435 | CVE-2008-6704 | Integer overflow in the NET_Compressor::Decompress function in S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to cause a denial of service (server crash) via a crafted packet with a 0xc1 value that contains no compressed data, which triggers a copy of a large amount of memory. | 2 | 5 | Medium | 2017-01-03 | 2009-04-25 | View | |
6691 | CVE-2008-6960 | download.php in X10media x10 Automatic Mp3 Search Engine Script 1.5.5 through 1.6 allows remote attackers to read arbitrary files via an encoded url parameter, as demonstrated by obtaining database credentials from includes/constants.php. | 2 | 5 | Medium | 2017-01-03 | 2009-08-18 | View | |
6947 | CVE-2008-7216 | Peter"s Math Anti-Spam Spinoff plugin for WordPress generates audio CAPTCHA clips by concatenating static audio files without any additional distortion, which allows remote attackers to bypass CAPTCHA protection by reading certain bytes from the generated clip. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-14 | View | |
73251 | CVE-2003-0104 | Directory traversal vulnerability in PeopleTools 8.10 through 8.18, 8.40, and 8.41 allows remote attackers to overwrite arbitrary files via the SchedulerTransfer servlet. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 1830 of 17672, showing 5 records out of 88360 total, starting on record 9146, ending on 9150