NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3359 | CVE-2008-3486 | Directory traversal vulnerability in the user_get_profile function in include/functions.inc.php in Coppermine Photo Gallery (CPG) 1.4.18 and earlier, when the charset is utf-8, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang part of serialized data in an _data cookie. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
| 6175 | CVE-2008-6444 | Stack-based buffer overflow in CSTransfer.dll in Baidu Hi IM might allow remote attackers to execute arbitrary code via a crafted packet, probably related to an improper length value. | 2 | 10 | High | 2017-01-03 | 2009-08-19 | View | |
| 3104 | CVE-2008-3221 | Cross-site request forgery (CSRF) vulnerability in Drupal 6.x before 6.3 allows remote attackers to perform administrative actions via vectors involving deletion of OpenID identities. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View | |
| 3105 | CVE-2008-3222 | Session fixation vulnerability in Drupal 5.x before 5.9 and 6.x before 6.3, when contributed modules "terminate the current request during a login event," allows remote attackers to hijack web sessions via unknown vectors. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-19 | View | |
| 6433 | CVE-2008-6702 | S.T.A.L.K.E.R.: Shadow of Chernobyl 1.0006 and earlier allows remote attackers to cause a denial of service (crash) via a long nickname, which triggers an exception. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 3326 of 17672, showing 5 records out of 88360 total, starting on record 16626, ending on 16630