NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6266 | CVE-2008-6535 | admin/settings.php in PayPal eStores allows remote attackers to bypass intended access restrictions and change the administrative password via a direct request with a modified NewAdmin parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-03-27 | View | |
| 48380 | CVE-2009-1070 | Cross-site scripting (XSS) vulnerability in system/index.php in ExpressionEngine 1.6.4 through 1.6.6, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via the avatar parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2009-03-27 | View | |
| 48381 | CVE-2009-1071 | Stack-based buffer overflow in Icarus 2.0 allows remote attackers to cause a denial of service (application crach) or execute arbitrary code via a crafted Portable Game Notation (.pgn) file. | 2 | 9.3 | High | 2017-01-07 | 2009-03-27 | View | |
| 4140 | CVE-2008-4312 | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. | 1 | 2017-01-03 | 2009-03-29 | View | |||
| 4654 | CVE-2008-4865 | Untrusted search path vulnerability in valgrind before 3.4.0 allows local users to execute arbitrary programs via a Trojan horse .valgrindrc file in the current working directory, as demonstrated using a malicious --db-command options. NOTE: the severity of this issue has been disputed, but CVE is including this issue because execution of a program from an untrusted directory is a common scenario. | 2 | 7.2 | High | 2017-01-03 | 2009-03-30 | View |
Page 2902 of 17672, showing 5 records out of 88360 total, starting on record 14506, ending on 14510