NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
195  CVE-2008-0210  Uebimiau Webmail 2.7.10 and 2.7.2 does not protect authentication state variables from being set through HTTP requests, which allows remote attackers to bypass authentication via a sess[auth]=1 parameter settting. NOTE: this can be leveraged to conduct directory traversal attacks without authentication by using CVE-2008-0140.    6.4  Medium  2017-01-03  2008-09-05  View
451  CVE-2008-0473  RTE_popup_save_file.asp in Web Wiz Rich Text Editor 4.0 allows remote attackers to upload (1) .html and (2) .htm files via unspecified vectors.    6.4  Medium  2017-01-03  2009-09-16  View
65987  CVE-2005-0223  The Software Development Kit (SDK) and Run Time Environment (RTE) 1.4.1 and 1.4.2 for Tru64 UNIX allows remote attackers to cause a denial of service (Java Virtual Machine hang) via object deserialization.    Medium  2017-01-03  2016-10-17  View
707  CVE-2008-0736  admin/SA_shipFedExMeter.asp in CandyPress (CP) 4.1.1.26, and possibly other 4.x and 3.x versions, allows remote attackers to obtain the path via a certain value of the FedExAccount parameter.    Medium  2017-01-03  2009-08-20  View
963  CVE-2008-1001  Cross-site scripting (XSS) vulnerability in Apple Safari before 3.1, when running on Windows XP or Vista, allows remote attackers to inject arbitrary web script or HTML via a crafted URL that is not properly handled in the error page.    4.3  Medium  2017-01-03  2013-08-29  View

Page 3271 of 17672, showing 5 records out of 88360 total, starting on record 16351, ending on 16355

Actions