NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6491 | CVE-2008-6760 | ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via an unauthenticated add and save action for a shopping cart in cart_save.php, which reveals the SQL table names in an error message, related to code that mishandles the lack of a user_id parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-28 | View | |
| 6747 | CVE-2008-7016 | tnftpd before 20080929 splits large command strings into multiple commands, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks via unknown vectors, probably involving a crafted ftp:// link to a tnftpd server. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-21 | View | |
| 7003 | CVE-2008-7276 | Kernel/System/Web/Request.pm in Open Ticket Request System (OTRS) before 2.3.2 creates a directory under /tmp/ with 1274 permissions, which might allow local users to bypass intended access restrictions via standard filesystem operations, related to incorrect interpretation of 0700 as a decimal value. | 2 | 4.6 | Medium | 2017-01-03 | 2011-03-22 | View | |
| 73307 | CVE-2003-0160 | Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail before 1.2.11 allow remote attackers to inject arbitrary HTML code and steal information from a client"s web browser. | 2 | 5.8 | Medium | 2017-01-03 | 2008-09-10 | View | |
| 73563 | CVE-2003-0433 | Multiple buffer overflows in gnocatan 0.6.1 and earlier allow attackers to execute arbitrary code. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 2346 of 17672, showing 5 records out of 88360 total, starting on record 11726, ending on 11730