NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 70450 | CVE-2005-4861 | functions.php in Ragnarok Online Control Panel (ROCP) 4.3.4a allows remote attackers to bypass authentication by requesting account_manage.php with a trailing "/login.php" PHP_SELF value, which is not properly handled by the CHECK_AUTH function. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 5170 | CVE-2008-5397 | Tor before 0.2.0.32 does not properly process the (1) User and (2) Group configuration options, which might allow local users to gain privileges by leveraging unintended supplementary group memberships of the Tor process. | 2 | 7.2 | High | 2017-01-03 | 2011-03-07 | View | |
| 5426 | CVE-2008-5684 | Unspecified vulnerability in the X Inter Client Exchange library (aka libICE) in Sun Solaris 8 through 10 and OpenSolaris before snv_85 allows context-dependent attackers to cause a denial of service (application crash), as demonstrated by a port scan that triggers a segmentation violation in the Gnome session manager (aka gnome-session). | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 5682 | CVE-2008-5951 | ASP Template Creature stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for workDB/templatemonster.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-01-26 | View | |
| 5938 | CVE-2008-6207 | Unrestricted file upload vulnerability in form_upload.php in PHPG Upload 1.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 8.5 | High | 2017-01-03 | 2009-07-23 | View |
Page 1963 of 17672, showing 5 records out of 88360 total, starting on record 9811, ending on 9815