NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
848 | CVE-2008-0877 | Multiple cross-site scripting (XSS) vulnerabilities in Jinzora Media Jukebox 2.7.5 allow remote attackers to inject arbitrary web script or HTML via the (1) frontend, (2) set_frontend, (3) jz_path, (4) theme, and (5) set_theme parameters to (a) index.php; the frontend, theme, and (6) language parameters to (b) ajax_request.php; the jz_path parameter to (c) slim.php; the frontend, theme, and jz_path parameters to (d) popup.php; the (13) PATH_INFO to index.php and (e) slim.php; and the (14) query parameter in a playlistedit action and (15) siteNewsData parameter in a sitenews action to (f) popup.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
66640 | CVE-2005-0890 | SQL injection vulnerability in Dream4 Koobi CMS 4.2.3 allows remote attackers to execute arbitrary SQL commands via the area parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
1360 | CVE-2008-1403 | Stack-based buffer overflow in the TFTP server in BootManage TFTPD 1.99 and earlier in BootManage Administrator 7.1 and earlier allows remote attackers to execute arbitrary code via a request with a long filename. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
2640 | CVE-2008-2746 | SQL injection vulnerability in login.php in Gryphon gllcTS2 4.2.4 allows remote attackers to execute arbitrary SQL commands via the detail parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68944 | CVE-2005-3282 | Splatt Forum 3.0 to 3.2 allows remote attackers to bypass authentication via unknown vectors. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 505 of 17672, showing 5 records out of 88360 total, starting on record 2521, ending on 2525