NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2036 | CVE-2008-2101 | The VMware Consolidated Backup (VCB) command-line utilities in VMware ESX 3.0.1 through 3.0.3 and ESX 3.5 place a password on the command line, which allows local users to obtain sensitive information by listing the process. | 2 | 2.1 | Low | 2017-01-03 | 2013-05-14 | View | |
2037 | CVE-2008-2103 | Cross-site scripting (XSS) vulnerability in Bugzilla 2.17.2 and later allows remote attackers to inject arbitrary web script or HTML via the id parameter to the "Format for Printing" view or "Long Format" bug list. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
2038 | CVE-2008-2104 | The WebService in Bugzilla 3.1.3 allows remote authenticated users without canconfirm privileges to create NEW or ASSIGNED bug entries via a request to the XML-RPC interface, which bypasses the canconfirm check. | 2 | 4 | Medium | 2017-01-03 | 2011-03-07 | View | |
2039 | CVE-2008-2105 | email_in.pl in Bugzilla 2.23.4, 3.0.x before 3.0.4, and 3.1.x before 3.1.4 allows remote authenticated users to more easily spoof the changer of a bug via a @reporter command in the body of an e-mail message, which overrides the e-mail address as normally obtained from the From e-mail header. NOTE: since From headers are easily spoofed, this only crosses privilege boundaries in environments that provide additional verification of e-mail addresses. | 2 | 3.5 | Low | 2017-01-03 | 2011-09-20 | View | |
2040 | CVE-2008-2106 | Call of Duty 4 (CoD4) 1.5 and earlier allows remote authenticated users to cause a denial of service (crash) via a type 7 stats packet, which triggers a memcpy with a negative value. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-01 | View |
Page 408 of 17672, showing 5 records out of 88360 total, starting on record 2036, ending on 2040