NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 4131 | CVE-2008-4303 | Multiple SQL injection vulnerabilities in phpCollab 2.5 rc3, 2.4, and earlier allow remote attackers to execute arbitrary SQL commands via the loginForm parameter to general/login.php, and unspecified other vectors. | 2 | 6.8 | Medium | 2017-01-03 | 2008-12-23 | View | |
| 69667 | CVE-2005-4029 | WebEOC before 6.0.2 allows remote attackers to obtain valid usernames via the HTML source of the WebEOC login webpage, which could be useful in other attacks such as locking out valid users via brute force methods. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 4387 | CVE-2008-4571 | Cross-site scripting (XSS) vulnerability in the LiveSearch module in Plone before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via the Description field for search results, as demonstrated using the onerror Javascript even in an IMG tag. | 2 | 4.3 | Medium | 2017-01-03 | 2008-11-15 | View | |
| 69923 | CVE-2005-4325 | Multiple unspecified vulnerabilities in Driverse before 0.56b have unknown impact and attack vectors, related to (1) a "ptrace exploit" and (2) "some other potential security problems." | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
| 4643 | CVE-2008-4829 | Multiple buffer overflows in lib/http.c in Streamripper 1.63.5 allow remote attackers to execute arbitrary code via (1) a long "Zwitterion v" HTTP header, related to the http_parse_sc_header function; (2) a crafted pls playlist with a long entry, related to the http_get_pls function; or (3) a crafted m3u playlist with a long File entry, related to the http_get_m3u function. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View |
Page 2111 of 17672, showing 5 records out of 88360 total, starting on record 10551, ending on 10555