NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3382 | CVE-2008-3509 | LoveCMS 1.6.2 does not require administrative authentication for (1) addblock.php, (2) blocks.php, and (3) themes.php in system/admin/, which allows remote attackers to change the configuration or execute arbitrary PHP code via addition of blocks, and other vectors. | 2 | 7.5 | High | 2017-01-03 | 2008-11-19 | View | |
| 68918 | CVE-2005-3256 | The key selection dialogue in Enigmail before 0.92.1 can incorrectly select a key with a user ID that does not have additional information, which allows parties with that key to decrypt the message. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 3638 | CVE-2008-3773 | Cross-site scripting (XSS) vulnerability in vBulletin 3.7.2 PL1 and 3.6.10 PL3, when "Show New Private Message Notification Pop-Up" is enabled, allows remote authenticated users to inject arbitrary web script or HTML via a private message subject (aka newpm[title]). | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 69174 | CVE-2005-3513 | index.php in VUBB alpha rc1 allows remote attackers to obtain the installation path of the application via a viewforum action with the f parameter set to a single quote ("). | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 3894 | CVE-2008-4036 | Integer overflow in Memory Manager in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows local users to gain privileges via a crafted application that triggers an erroneous decrement of a variable, related to validation of parameters for Virtual Address Descriptors (VADs) and a "memory allocation mapping error," aka "Virtual Address Descriptor Elevation of Privilege Vulnerability." | 2 | 7.2 | High | 2017-01-03 | 2011-03-07 | View |
Page 3253 of 17672, showing 5 records out of 88360 total, starting on record 16261, ending on 16265