NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2671  CVE-2008-2777  Cross-site scripting (XSS) vulnerability in Ortro before 1.3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-03  2009-04-08  View
2672  CVE-2008-2778  SQL injection vulnerability in inc/class_search.php in the Search System in RevokeBB 1.0 RC11 allows remote attackers to execute arbitrary SQL commands via the search parameter.    7.5  High  2017-01-03  2011-03-07  View
2673  CVE-2008-2779  Directory traversal vulnerability in GlobalSCAPE CuteFTP Home 8.2.0 Build 02.26.2008.4 and CuteFTP Pro 8.2.0 Build 04.01.2008.1 allows remote FTP servers to create or overwrite arbitrary files via .. (dot dot backslash) sequences in responses to LIST commands, a related issue to CVE-2002-1345. NOTE: this can be leveraged for code execution by writing to a Startup folder.    9.3  High  2017-01-03  2011-03-07  View
2674  CVE-2008-2780  The Anubis (aka Anubis+Ripe160) plugin before 1.3 for encrypt stores the unencrypted file"s size in cleartext in the header of the encrypted file, which allows attackers to distinguish between encrypted data and random padding at the end of the encrypted file.    6.4  Medium  2017-01-03  2011-03-07  View
2675  CVE-2008-2781  SQL injection vulnerability in index.php in DZOIC Handshakes 3.5 allows remote attackers to execute arbitrary SQL commands via the fname parameter in a members search action.    7.5  High  2017-01-03  2009-01-29  View

Page 535 of 17672, showing 5 records out of 88360 total, starting on record 2671, ending on 2675

Actions