NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2377  CVE-2008-2463  The Microsoft Office Snapshot Viewer ActiveX control in snapview.ocx 10.0.5529.0, as distributed in the standalone Snapshot Viewer and Microsoft Office Access 2000 through 2003, allows remote attackers to download arbitrary files to a client machine via a crafted HTML document or e-mail message, probably involving use of the SnapshotPath and CompressedPath properties and the PrintSnapshot method. NOTE: this can be leveraged for code execution by writing to a Startup folder.    6.8  Medium  2017-01-03  2012-09-12  View
67913  CVE-2005-2211  Backup Manager 0.5.8a creates temporary files insecurely, which allows local users to conduct unauthorized file operations when a user is burning a CDR.    4.6  Medium  2017-01-03  2008-09-05  View
68425  CVE-2005-2736  Cross-site scripting (XSS) vulnerability in YaPig 0.95 and earlier allows remote attackers to inject arbitrary web script or HTML via EXIF data, such as the Camera Model Tag.    4.3  Medium  2017-07-18  2017-07-10  View
3145  CVE-2008-3262  Cross-site request forgery (CSRF) vulnerability in Claroline before 1.8.10 allows remote attackers to change passwords, related to lack of a requirement for the previous password.    5.8  Medium  2017-01-03  2009-08-19  View
68681  CVE-2005-3017  PHP file inclusion vulnerability in index.php in Content2Web 1.0.1 allows remote attackers to include arbitrary files via the show parameter, which can lead to resultant errors such as path disclosure, SQL error messages, and cross-site scripting (XSS).    4.3  Medium  2017-01-03  2008-09-05  View

Page 2627 of 17672, showing 5 records out of 88360 total, starting on record 13131, ending on 13135

Actions