NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6518  CVE-2008-6787  SQL injection vulnerability in administrator/index.php in Lizardware CMS 0.6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the user.    7.5  High  2017-01-03  2009-05-05  View
6774  CVE-2008-7043  Cross-site scripting (XSS) vulnerability in register.php in FreshScripts Fresh Email Script 1.0 through 1.11 allows remote attackers to inject arbitrary web script or HTML via the Email parameter. NOTE: this can be leveraged to modify cookies and conduct session fixation attacks.    4.3  Medium  2017-01-03  2009-08-24  View
7030  CVE-2008-7309  Insoshi before 20080920 does not properly restrict the use of a hash to provide values for a model"s attributes, which allows remote attackers to set the ForumPost user_id value via a modified URL, related to a "mass assignment" vulnerability.    Medium  2017-01-03  2012-04-12  View
73334  CVE-2003-0194  tcpdump does not properly drop privileges to the pcap user when starting up.    4.6  Medium  2017-01-03  2008-09-05  View
73590  CVE-2003-0463  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.        2017-01-03  2008-09-10  View

Page 2595 of 17672, showing 5 records out of 88360 total, starting on record 12971, ending on 12975

Actions