NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6266  CVE-2008-6535  admin/settings.php in PayPal eStores allows remote attackers to bypass intended access restrictions and change the administrative password via a direct request with a modified NewAdmin parameter.    7.5  High  2017-01-03  2009-03-27  View
48380  CVE-2009-1070  Cross-site scripting (XSS) vulnerability in system/index.php in ExpressionEngine 1.6.4 through 1.6.6, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via the avatar parameter.    4.3  Medium  2017-01-07  2009-03-27  View
48381  CVE-2009-1071  Stack-based buffer overflow in Icarus 2.0 allows remote attackers to cause a denial of service (application crach) or execute arbitrary code via a crafted Portable Game Notation (.pgn) file.    9.3  High  2017-01-07  2009-03-27  View
4140  CVE-2008-4312  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.        2017-01-03  2009-03-29  View
4654  CVE-2008-4865  Untrusted search path vulnerability in valgrind before 3.4.0 allows local users to execute arbitrary programs via a Trojan horse .valgrindrc file in the current working directory, as demonstrated using a malicious --db-command options. NOTE: the severity of this issue has been disputed, but CVE is including this issue because execution of a program from an untrusted directory is a common scenario.    7.2  High  2017-01-03  2009-03-30  View

Page 2902 of 17672, showing 5 records out of 88360 total, starting on record 14506, ending on 14510

Actions