NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68172 | CVE-2005-2481 | ColdFusion Fusebox 4.1.0 allows remote attackers to obtain sensitive information via an invalid fuseaction parameter, which leaks the full server path in an error message, as demonstrated using the "?" (question mark) character. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 2892 | CVE-2008-2998 | Multiple cross-site scripting (XSS) vulnerabilities in the Aggregation module 5.x before 5.x-4.4 for Drupal allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-09 | View | |
| 3148 | CVE-2008-3265 | SQL injection vulnerability in the DT Register (com_dtregister) 2.2.3 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the eventId parameter in a pay_options action to index.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-19 | View | |
| 3404 | CVE-2008-3532 | The NSS plugin in libpurple in Pidgin 2.4.3 does not verify SSL certificates, which makes it easier for remote attackers to trick a user into accepting an invalid server certificate for a spoofed service. | 2 | 6.8 | Medium | 2017-01-03 | 2013-11-02 | View | |
| 3660 | CVE-2008-3796 | Swfdec 0.6 before 0.6.8 allows remote attackers to cause a denial of service (application crash) via a 1x1 JPEG image. | 2 | 5 | Medium | 2017-01-03 | 2009-02-20 | View |
Page 2200 of 17672, showing 5 records out of 88360 total, starting on record 10996, ending on 11000