NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 1621 | CVE-2008-1679 | Multiple integer overflows in imageop.c in Python before 2.5.3 allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted images that trigger heap-based buffer overflows. NOTE: this issue is due to an incomplete fix for CVE-2007-4965. | 2 | 6.8 | Medium | 2017-01-03 | 2010-08-21 | View | |
| 1877 | CVE-2008-1941 | Cross-site scripting (XSS) vulnerability in the profile update feature in Akiva WebBoard 8.0 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors in the form field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 3.5 | Low | 2017-01-03 | 2008-09-05 | View | |
| 67413 | CVE-2005-1688 | Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/, (2) wp-includes/, or (3) wp-admin/, which reveal the path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 2133 | CVE-2008-2206 | Multiple cross-site scripting (XSS) vulnerabilities in Maian Music 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter in a search action to index.php, and the (2) msg_script parameter to admin/inc/footer.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 67669 | CVE-2005-1954 | singapore 0.9.11 allows remote attackers to obtain sensitive information via a direct request to (1) admin.class.php, (2) any .tpl.php file in templates/admin_default/, or (3) any .tpl.php file in templates/default/, which reveal the path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 2283 of 17672, showing 5 records out of 88360 total, starting on record 11411, ending on 11415