NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4407  CVE-2008-4591  Multiple cross-site scripting (XSS) vulnerabilities in admin/include/isadmin.inc.php in PhpWebGallery 1.3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) lang[access_forbiden] and (2) lang[ident_title] parameters.    4.3  Medium  2017-01-03  2009-08-19  View
69943  CVE-2005-4345  Adobe (formerly Macromedia) ColdFusion MX 7.0 exposes the password hash of the Administrator in an API call, which allows local developers to obtain the hash and gain privileges.    7.2  High  2017-01-03  2011-03-07  View
4663  CVE-2008-4874  The web component in Philips Electronics VOIP841 DECT Phone with firmware 1.0.4.50 and 1.0.4.80 has a back door "service" account with "service" as its password, which makes it easier for remote attackers to obtain access.    Medium  2017-01-03  2011-03-07  View
70199  CVE-2005-4610  Format string vulnerability in the server for Dopewars before 1.5.12, when running as an NT service, allows remote attackers to execute arbitrary code via unspecified attack vectors.    7.5  High  2017-01-03  2011-03-07  View
4919  CVE-2008-5135  ** DISPUTED ** os-prober in os-prober 1.17 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/mounted-map or (2) /tmp/raided-map temporary file. NOTE: the vendor disputes this issue, stating "the insecure code path should only ever run inside a d-i environment, which has no non-root users."    6.2  Medium  2017-01-03  2008-11-18  View

Page 3315 of 17672, showing 5 records out of 88360 total, starting on record 16571, ending on 16575

Actions