NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2864  CVE-2008-2970  Multiple session fixation vulnerabilities in Academic Web Tools (AWT YEKTA) 1.4.3.1, and 1.4.2.8 and earlier, allow remote attackers to hijack web sessions by setting the PHPSESSID parameter to (1) index.php and (2) login.php in homepg/.    7.5  High  2017-01-03  2009-04-14  View
3120  CVE-2008-3237  Cross-site scripting (XSS) vulnerability in forward_to_friend.php in ITechBids 7.0 Gold allows remote attackers to inject arbitrary web script or HTML via the productid parameter.    4.3  Medium  2017-01-03  2011-03-07  View
68656  CVE-2005-2992  arc 5.21j and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different type of vulnerability than CVE-2005-2945.    2.1  Low  2017-01-03  2016-10-17  View
3376  CVE-2008-3503  RSSFromParent in Plain Black WebGUI before 7.5.13 does not restrict view access to Collaboration System (CS) RSS feeds, which allows remote attackers to obtain sensitive information (CS data).    Medium  2017-01-03  2011-03-07  View
68912  CVE-2005-3250  Unknown vulnerability in Solaris 10 allows local users to cause a denial of service (panic) via unknown vectors related to the "/proc" filesystem, which trigger a null dereference.    2.1  Low  2017-01-03  2013-07-20  View

Page 2891 of 17672, showing 5 records out of 88360 total, starting on record 14451, ending on 14455

Actions