NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6237  CVE-2008-6506  Unspecified vulnerability in phpBB before 3.0.4 allows attackers to bypass intended access restrictions and activate de-activated accounts via unknown vectors.    Medium  2017-01-03  2010-04-24  View
71773  CVE-2004-1394  The pfexec function for Sun Solaris 8 and 9 does not properly handle when a custom profile contains an invalid entry in the exec_attr database, which may allow local users with custom rights profiles to execute profile commands with additional privileges.    4.6  Medium  2017-07-18  2017-07-10  View
6493  CVE-2008-6762  Open redirect vulnerability in wp-admin/upgrade.php in WordPress, probably 2.6.x, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the backto parameter.    4.3  Medium  2017-01-03  2009-08-26  View
6749  CVE-2008-7018  Cross-site scripting (XSS) vulnerability in NashTech Easy PHP Calendar 6.3.25 allows remote attackers to inject arbitrary web script or HTML via the Details field (descr parameter) in an Add New Event action in an unspecified request as generated by an add action in index.php.    4.3  Medium  2017-01-03  2009-08-21  View
7005  CVE-2008-7278  The S/MIME feature in Open Ticket Request System (OTRS) before 2.2.5, and 2.3.x before 2.3.0-beta1, does not properly configure the RANDFILE environment variable for OpenSSL, which might make it easier for remote attackers to decrypt e-mail messages that had lower than intended entropy available for cryptographic operations, related to inability to write to the seeding file.    Medium  2017-01-03  2011-03-22  View

Page 3335 of 17672, showing 5 records out of 88360 total, starting on record 16671, ending on 16675

Actions