NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 195 | CVE-2008-0210 | Uebimiau Webmail 2.7.10 and 2.7.2 does not protect authentication state variables from being set through HTTP requests, which allows remote attackers to bypass authentication via a sess[auth]=1 parameter settting. NOTE: this can be leveraged to conduct directory traversal attacks without authentication by using CVE-2008-0140. | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 451 | CVE-2008-0473 | RTE_popup_save_file.asp in Web Wiz Rich Text Editor 4.0 allows remote attackers to upload (1) .html and (2) .htm files via unspecified vectors. | 2 | 6.4 | Medium | 2017-01-03 | 2009-09-16 | View | |
| 65987 | CVE-2005-0223 | The Software Development Kit (SDK) and Run Time Environment (RTE) 1.4.1 and 1.4.2 for Tru64 UNIX allows remote attackers to cause a denial of service (Java Virtual Machine hang) via object deserialization. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 707 | CVE-2008-0736 | admin/SA_shipFedExMeter.asp in CandyPress (CP) 4.1.1.26, and possibly other 4.x and 3.x versions, allows remote attackers to obtain the path via a certain value of the FedExAccount parameter. | 2 | 5 | Medium | 2017-01-03 | 2009-08-20 | View | |
| 963 | CVE-2008-1001 | Cross-site scripting (XSS) vulnerability in Apple Safari before 3.1, when running on Windows XP or Vista, allows remote attackers to inject arbitrary web script or HTML via a crafted URL that is not properly handled in the error page. | 2 | 4.3 | Medium | 2017-01-03 | 2013-08-29 | View |
Page 3271 of 17672, showing 5 records out of 88360 total, starting on record 16351, ending on 16355