NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2566 | CVE-2008-2668 | Multiple cross-site scripting (XSS) vulnerabilities in yBlog 0.2.2.2 allow remote attackers to inject arbitrary web script or HTML via (1) the q parameter to search.php, or the n parameter to (2) user.php or (3) uss.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 4614 | CVE-2008-4800 | The DebugDiag ActiveX control in CrashHangExt.dll, possibly 1.0, in Microsoft Debug Diagnostic Tool allows remote attackers to cause a denial of service (NULL pointer dereference and Internet Explorer 6.0 crash) via a large negative integer argument to the GetEntryPointForThread method. NOTE: this issue might only be exploitable in limited environments or non-default browser settings. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 2567 | CVE-2008-2669 | Multiple SQL injection vulnerabilities in yBlog 0.2.2.2 allow remote attackers to execute arbitrary SQL commands via (1) the q parameter to search.php, or the n parameter to (2) user.php or (3) uss.php. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 3591 | CVE-2008-3726 | Cross-site scripting (XSS) vulnerability in Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 allows remote attackers to inject arbitrary web script or HTML via the URI. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 2568 | CVE-2008-2670 | Multiple SQL injection vulnerabilities in index.php in Insanely Simple Blog 0.5 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter, or (2) the term parameter in a search action. NOTE: the current_subsection parameter is already covered by CVE-2007-3889. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View |
Page 2592 of 17672, showing 5 records out of 88360 total, starting on record 12956, ending on 12960