NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
814 | CVE-2008-0843 | StatCounteX 3.0 and 3.1 allows remote attackers to obtain sensitive information and edit configuration scripts via a direct request to admin.asp. | 2 | 6.4 | Medium | 2017-01-03 | 2010-02-24 | View | |
1070 | CVE-2008-1109 | Heap-based buffer overflow in Evolution 2.22.1 allows user-assisted remote attackers to execute arbitrary code via a long DESCRIPTION property in an iCalendar attachment, which is not properly handled during a reply in the calendar view (aka the Calendars window). | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View | |
66606 | CVE-2005-0856 | CoolForum 0.8.1 beta and earlier allows remote attackers to manipulate SQL commands via certain requests to (1) alert.php or (2) viewip.php, possibly due to a SQL injection vulnerability. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
1326 | CVE-2008-1368 | CRLF injection vulnerability in Microsoft Internet Explorer 5 and 6 allows remote attackers to execute arbitrary FTP commands via an ftp:// URL that contains a URL-encoded CRLF (%0D%0A) before the FTP command, which causes the commands to be inserted into an authenticated FTP connection established earlier in the same browser session, as demonstrated using a DELE command, a variant or possibly a regression of CVE-2004-1166. NOTE: a trailing "//" can force Internet Explorer to try to reuse an existing authenticated connection. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
1582 | CVE-2008-1640 | SQL injection vulnerability in jgs_treffen.php in the JGS-XA JGS-Treffen 2.0.2 and earlier addon for Woltlab Burning Board (wBB) allows remote attackers to execute arbitrary SQL commands via the view_id parameter in an ansicht action. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View |
Page 1921 of 17672, showing 5 records out of 88360 total, starting on record 9601, ending on 9605