NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2214 | CVE-2008-2293 | admin.php in Multi-Page Comment System (MPCS) 1.0 and 1.1 allows remote attackers to bypass authentication and gain privileges by setting the CommentSystemAdmin cookie to 1. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 2470 | CVE-2008-2563 | Multiple cross-site scripting (XSS) vulnerabilities in (1) dsp_main.php and (2) dsp_task_editor.php in SamTodo 1.1 allow remote attackers to inject arbitrary web script or HTML via the (a) tid parameter in a main.taskeditor edit action, and the (b) completed parameter in a main.default action, to index.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-10 | View | |
| 68006 | CVE-2005-2305 | DG Remote Control Server 1.6.2 allows remote attackers to cause a denial of service (crash or CPU consumption) and possibly execute arbitrary code via a long message to TCP port 1071 or 1073, possibly due to a buffer overflow. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 2726 | CVE-2008-2832 | Unrestricted file upload vulnerability in calendar_admin.asp in Full Revolution aspWebCalendar 2008 allows remote attackers to upload and execute arbitrary code via the FILE1 parameter in an uploadfileprocess action, probably followed by a direct request to the file in calendar/eventimages/. | 2 | 10 | High | 2017-01-03 | 2009-04-14 | View | |
| 2982 | CVE-2008-3097 | Cross-site scripting (XSS) vulnerability in the Tinytax module (aka Tinytax taxonomy block) 5.x before 5.x-1.10-1 for Drupal allows remote authenticated users to inject arbitrary web script or HTML, probably by creating a crafted taxonomy term. | 2 | 3.5 | Low | 2017-01-03 | 2008-09-05 | View |
Page 3018 of 17672, showing 5 records out of 88360 total, starting on record 15086, ending on 15090