NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2870 | CVE-2008-2976 | Multiple directory traversal vulnerabilities in TinX/cms 1.1, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) language parameter to (a) include_me.php, (b) admin/ajax.php, and (c) admin/objects/catalog.ajaxhandler.php; and the (2) prefix parameter to (d) admin/inc/config.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-14 | View | |
3126 | CVE-2008-3243 | Multiple unspecified vulnerabilities in the scanning engine before 4.4.4 in F-Prot Antivirus before 6.0.9.0 allow remote attackers to cause a denial of service via (1) a crafted UPX-compressed file, which triggers an engine crash; (2) a crafted Microsoft Office file, which triggers an infinite loop; or (3) an ASPack-compressed file, which triggers an engine crash. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-10 | View | |
68918 | CVE-2005-3256 | The key selection dialogue in Enigmail before 0.92.1 can incorrectly select a key with a user ID that does not have additional information, which allows parties with that key to decrypt the message. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
3638 | CVE-2008-3773 | Cross-site scripting (XSS) vulnerability in vBulletin 3.7.2 PL1 and 3.6.10 PL3, when "Show New Private Message Notification Pop-Up" is enabled, allows remote authenticated users to inject arbitrary web script or HTML via a private message subject (aka newpm[title]). | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
69174 | CVE-2005-3513 | index.php in VUBB alpha rc1 allows remote attackers to obtain the installation path of the application via a viewforum action with the f parameter set to a single quote ("). | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 1943 of 17672, showing 5 records out of 88360 total, starting on record 9711, ending on 9715