NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2340 | CVE-2008-2424 | Unspecified vulnerability in the 404 error page for the "Standard demo" in Interchange before 5.6.0 and before 5.5.2 has unknown impact and attack vectors. | 2 | 10 | High | 2017-01-03 | 2009-04-08 | View | |
| 67876 | CVE-2005-2174 | Bugzilla 2.17.x, 2.18 before 2.18.2, 2.19.x, and 2.20 before 2.20rc1 inserts a bug into the database before it is marked private, which introduces a race condition and allows attackers to access information about the bug via buglist.cgi before MySQL replication is complete. | 2 | 2.6 | Low | 2017-01-03 | 2008-09-05 | View | |
| 2596 | CVE-2008-2698 | Multiple cross-site scripting (XSS) vulnerabilities in photo_add-c.php (aka the "add comment" section) in WEBalbum 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) id, or (3) category parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 2852 | CVE-2008-2958 | Race condition in (1) checkinstall 1.6.1 and (2) installwatch allows local users to overwrite arbitrary files and have other impacts via symlink and possibly other attacks on temporary working directories. | 2 | 4.4 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 68388 | CVE-2005-2699 | Unrestricted file upload vulnerability in admin/admin.php in PHPKit 1.6.1 allows remote authenticated administrators to execute arbitrary PHP code by uploading a .php file to the content/images/ directory using images.php. NOTE: if a PHPKit administrator must already have access to the end system to install or modify configuration of the product, then this issue might not cross privilege boundaries, and should not be included in CVE. | 2 | 4.6 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 2169 of 17672, showing 5 records out of 88360 total, starting on record 10841, ending on 10845