NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6679 | CVE-2008-6948 | Unrestricted file upload vulnerability in Collabtive 0.4.8 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension and using a text/plain MIME type, then accessing it via a direct request to the file in files/, related to (1) the showproject action in managefile.php or (2) the Messages feature. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-12 | View | |
72215 | CVE-2004-1837 | Cross-site scripting (XSS) vulnerability in Mod_survey 3.0.x before 3.0.16-pre2 and 3.2.x before 3.2.0-pre4 allows remote attackers to inject arbitrary web script or HTML via the certain survey fields or error messages for malformed query strings. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
6935 | CVE-2008-7204 | Cross-site request forgery (CSRF) vulnerability in VirtueMart 1.0.13a and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-03 | 2009-09-11 | View | |
72471 | CVE-2004-2094 | Cross-site scripting (XSS) vulnerability in WebcamXP 1.06.945 allows remote attackers to inject arbitrary HTML or web script as other users via a URL that contains the script. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
7191 | CVE-2011-0055 | Use-after-free vulnerability in the JSON.stringify method in js3250.dll in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, might allow remote attackers to execute arbitrary code via unspecified vectors related to the js_HasOwnProperty function and garbage collection. | 2 | 10 | High | 2017-01-07 | 2017-01-06 | View |
Page 1923 of 17672, showing 5 records out of 88360 total, starting on record 9611, ending on 9615