NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2036  CVE-2008-2101  The VMware Consolidated Backup (VCB) command-line utilities in VMware ESX 3.0.1 through 3.0.3 and ESX 3.5 place a password on the command line, which allows local users to obtain sensitive information by listing the process.    2.1  Low  2017-01-03  2013-05-14  View
2037  CVE-2008-2103  Cross-site scripting (XSS) vulnerability in Bugzilla 2.17.2 and later allows remote attackers to inject arbitrary web script or HTML via the id parameter to the "Format for Printing" view or "Long Format" bug list.    4.3  Medium  2017-01-03  2011-03-07  View
2038  CVE-2008-2104  The WebService in Bugzilla 3.1.3 allows remote authenticated users without canconfirm privileges to create NEW or ASSIGNED bug entries via a request to the XML-RPC interface, which bypasses the canconfirm check.    Medium  2017-01-03  2011-03-07  View
2039  CVE-2008-2105  email_in.pl in Bugzilla 2.23.4, 3.0.x before 3.0.4, and 3.1.x before 3.1.4 allows remote authenticated users to more easily spoof the changer of a bug via a @reporter command in the body of an e-mail message, which overrides the e-mail address as normally obtained from the From e-mail header. NOTE: since From headers are easily spoofed, this only crosses privilege boundaries in environments that provide additional verification of e-mail addresses.    3.5  Low  2017-01-03  2011-09-20  View
2040  CVE-2008-2106  Call of Duty 4 (CoD4) 1.5 and earlier allows remote authenticated users to cause a denial of service (crash) via a type 7 stats packet, which triggers a memcpy with a negative value.    6.8  Medium  2017-01-03  2009-04-01  View

Page 408 of 17672, showing 5 records out of 88360 total, starting on record 2036, ending on 2040

Actions