NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6491  CVE-2008-6760  ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via an unauthenticated add and save action for a shopping cart in cart_save.php, which reveals the SQL table names in an error message, related to code that mishandles the lack of a user_id parameter.    4.3  Medium  2017-01-03  2009-04-28  View
6747  CVE-2008-7016  tnftpd before 20080929 splits large command strings into multiple commands, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks via unknown vectors, probably involving a crafted ftp:// link to a tnftpd server.    6.8  Medium  2017-01-03  2009-08-21  View
7003  CVE-2008-7276  Kernel/System/Web/Request.pm in Open Ticket Request System (OTRS) before 2.3.2 creates a directory under /tmp/ with 1274 permissions, which might allow local users to bypass intended access restrictions via standard filesystem operations, related to incorrect interpretation of 0700 as a decimal value.    4.6  Medium  2017-01-03  2011-03-22  View
73307  CVE-2003-0160  Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail before 1.2.11 allow remote attackers to inject arbitrary HTML code and steal information from a client"s web browser.    5.8  Medium  2017-01-03  2008-09-10  View
73563  CVE-2003-0433  Multiple buffer overflows in gnocatan 0.6.1 and earlier allow attackers to execute arbitrary code.    7.5  High  2017-01-03  2008-09-05  View

Page 2346 of 17672, showing 5 records out of 88360 total, starting on record 11726, ending on 11730

Actions