NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5387 | CVE-2008-5645 | Directory traversal vulnerability in the media server in Orb Networks Orb before 2.01.0022 allows remote attackers to read arbitrary files via directory traversal sequences in an HTTP GET request. | 2 | 7.8 | High | 2017-01-03 | 2011-03-07 | View | |
| 5643 | CVE-2008-5912 | An unspecified function in the JavaScript implementation in Microsoft Internet Explorer creates and exposes a "temporary footprint" when there is a current login to a web site, which makes it easier for remote attackers to trick a user into acting upon a spoofed pop-up message, aka an "in-session phishing attack." NOTE: as of 20090116, the only disclosure is a vague pre-advisory with no actionable information. However, because it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes. | 2 | 2.1 | Low | 2017-01-03 | 2009-01-29 | View | |
| 5899 | CVE-2008-6168 | Cross-site scripting (XSS) vulnerability in search.php in miniPortail 2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via an unspecified argument, probably the search string. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-30 | View | |
| 6155 | CVE-2008-6424 | Directory traversal vulnerability in FFFTP 1.96b allows remote FTP servers to create or overwrite arbitrary files via a response to an FTP LIST command with a filename that contains a .. (dot dot). | 2 | 8.8 | High | 2017-01-03 | 2009-04-02 | View | |
| 6411 | CVE-2008-6680 | libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash) via a crafted EXE file that triggers a divide-by-zero error. | 2 | 5 | Medium | 2017-01-03 | 2009-09-16 | View |
Page 2870 of 17672, showing 5 records out of 88360 total, starting on record 14346, ending on 14350