NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68808 | CVE-2005-3146 | StoreBackup before 1.19 allows local users to perform unauthorized operations on arbitrary files via a symlink attack on temporary files. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View | |
| 3528 | CVE-2008-3660 | PHP 4.4.x before 4.4.9, and 5.x through 5.2.6, when used as a FastCGI module, allows remote attackers to cause a denial of service (crash) via a request with multiple dots preceding the extension, as demonstrated using foo..php. | 2 | 5 | Medium | 2017-01-03 | 2012-10-30 | View | |
| 69064 | CVE-2005-3402 | The SMTP client in Mozilla Thunderbird 1.0.5 BETA, 1.0.7, and possibly other versions, does not notify users when it cannot establish a secure channel with the server, which allows remote attackers to obtain authentication information without detection via a man-in-the-middle (MITM) attack that bypasses TLS authentication or downgrades CRAM-MD5 authentication to plain authentication. | 2 | 2.6 | Low | 2017-01-03 | 2016-10-17 | View | |
| 3784 | CVE-2008-3922 | awstatstotals.php in AWStats Totals 1.0 through 1.14 allows remote attackers to execute arbitrary code via PHP sequences in the sort parameter, which is used by the multisort function when dynamically creating an anonymous PHP function. | 2 | 9.3 | High | 2017-01-03 | 2011-09-21 | View | |
| 4040 | CVE-2008-4184 | Cross-site scripting (XSS) vulnerability in index.php in webCMS Portal Edition allows remote attackers to inject arbitrary web script or HTML via the patron parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2008-10-23 | View |
Page 3320 of 17672, showing 5 records out of 88360 total, starting on record 16596, ending on 16600