NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5140 | CVE-2008-5362 | The DefineConstantPool action in the ActionScript 2 virtual machine in Adobe Flash Player 10.x before 10.0.12.36 and 9.x before 9.0.151.0, and Adobe AIR before 1.5, accepts an untrusted input value for a "constant count," which allows remote attackers to read sensitive data from process memory via a crafted PDF file. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-20 | View | |
| 5141 | CVE-2008-5363 | The ActionScript 2 virtual machine in Adobe Flash Player 10.x before 10.0.12.36 and 9.x before 9.0.151.0, and Adobe AIR before 1.5, does not validate character elements during retrieval from the dictionary data structure, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PDF file. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-20 | View | |
| 6179 | CVE-2008-6448 | Cross-site scripting (XSS) vulnerability in install.cgi in SKYARC System MTCMS WYSIWYG Editor allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-20 | View | |
| 5421 | CVE-2008-5679 | The HTML parsing engine in Opera before 9.63 allows remote attackers to execute arbitrary code via crafted web pages that trigger an invalid pointer calculation and heap corruption. | 2 | 9.3 | High | 2017-01-03 | 2009-03-20 | View | |
| 6208 | CVE-2008-6477 | SQL injection vulnerability in Mumbo Jumbo Media OP4 allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. | 2 | 7.5 | High | 2017-01-03 | 2009-03-20 | View |
Page 2880 of 17672, showing 5 records out of 88360 total, starting on record 14396, ending on 14400