NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
910  CVE-2008-0940  Cross-site scripting (XSS) vulnerability in Plain Black WebGUI before 7.4.24 allows remote attackers to inject arbitrary web script or HTML when creating a username, a different vulnerability than CVE-2007-0407.    4.3  Medium  2017-01-03  2008-09-05  View
66446  CVE-2005-0695  The password recovery feature (forgotpassword.asp) in Hosting Controller 6.1 Hotfix 1.7 and earlier allows remote attackers to determine the owner"s e-mail address by providing a portion of the domain name to the "login ID" field.    Medium  2017-01-03  2016-10-17  View
1166  CVE-2008-1206  Format string vulnerability in the log_message function in lks.c in Linux Kiss Server 1.2, when background (daemon) mode is disabled, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in an invalid command.    6.8  Medium  2017-01-03  2011-03-07  View
1422  CVE-2008-1475  The xml-rpc server in Roundup 1.4.4 does not check property permissions, which allows attackers to bypass restrictions and edit or read restricted properties via the (1) list, (2) display, and (3) set methods.    6.4  Medium  2017-01-03  2012-05-31  View
66958  CVE-2005-1211  Buffer overflow in the PNG image rendering component of Microsoft Internet Explorer allows remote attackers to execute arbitrary code via a crafted PNG file.    5.1  Medium  2017-01-03  2008-09-10  View

Page 2806 of 17672, showing 5 records out of 88360 total, starting on record 14026, ending on 14030

Actions