NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 4407 | CVE-2008-4591 | Multiple cross-site scripting (XSS) vulnerabilities in admin/include/isadmin.inc.php in PhpWebGallery 1.3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) lang[access_forbiden] and (2) lang[ident_title] parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View | |
| 69943 | CVE-2005-4345 | Adobe (formerly Macromedia) ColdFusion MX 7.0 exposes the password hash of the Administrator in an API call, which allows local developers to obtain the hash and gain privileges. | 2 | 7.2 | High | 2017-01-03 | 2011-03-07 | View | |
| 4663 | CVE-2008-4874 | The web component in Philips Electronics VOIP841 DECT Phone with firmware 1.0.4.50 and 1.0.4.80 has a back door "service" account with "service" as its password, which makes it easier for remote attackers to obtain access. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 70199 | CVE-2005-4610 | Format string vulnerability in the server for Dopewars before 1.5.12, when running as an NT service, allows remote attackers to execute arbitrary code via unspecified attack vectors. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 4919 | CVE-2008-5135 | ** DISPUTED ** os-prober in os-prober 1.17 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/mounted-map or (2) /tmp/raided-map temporary file. NOTE: the vendor disputes this issue, stating "the insecure code path should only ever run inside a d-i environment, which has no non-root users." | 2 | 6.2 | Medium | 2017-01-03 | 2008-11-18 | View |
Page 3315 of 17672, showing 5 records out of 88360 total, starting on record 16571, ending on 16575