NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2575  CVE-2008-2677  Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbitrary web script or HTML via the action parameter.    4.3  Medium  2017-01-03  2009-04-14  View
2831  CVE-2008-2937  Postfix 2.5 before 2.5.4 and 2.6 before 2.6-20080814 delivers to a mailbox file even when this file is not owned by the recipient, which allows local users to read e-mail messages by creating a mailbox file corresponding to another user"s account name.    1.9  Low  2017-01-03  2016-12-07  View
68367  CVE-2005-2678  Microsoft IIS 5.1 and 6 allows remote attackers to spoof the SERVER_NAME variable to bypass security checks and conduct various attacks via a GET request with an http://localhost URI, which makes it appear as if the request is coming from localhost.    Medium  2017-01-03  2016-10-17  View
3087  CVE-2008-3204  SQL injection vulnerability in tops_top.php in E-topbiz Million Pixels 3 allows remote attackers to execute arbitrary SQL commands via the id_cat parameter.    7.5  High  2017-01-03  2009-01-29  View
68623  CVE-2005-2959  Incomplete blacklist vulnerability in sudo 1.6.8 and earlier allows local users to gain privileges via the (1) SHELLOPTS and (2) PS4 environment variables before executing a bash script on behalf of another user, which are not cleared even though other variables are.    4.6  Medium  2017-01-03  2011-07-28  View

Page 3105 of 17672, showing 5 records out of 88360 total, starting on record 15521, ending on 15525

Actions