NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
CVE-2008-0009  The vmsplice_to_user function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which might allow local users to access arbitrary kernel memory locations.    2.1  Low  2017-01-03  2011-03-07  View
65545  CVE-2006-7002  Cross-site scripting (XSS) vulnerability in add_comment.php in Wheatblog (wB) 1.1 allows remote attackers to inject arbitrary web script or HTML via the Email field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this issue may overlap CVE-2006-5195.    4.3  Medium  2016-12-20  2008-11-15  View
265  CVE-2008-0280  SQL injection vulnerability in index.php in MTCMS 2.0 and possibly earlier versions allows remote attackers to execute arbitrary SQL commands via the (1) a or (2) cid parameter.    7.5  High  2017-01-03  2008-09-05  View
521  CVE-2008-0546  Multiple SQL injection vulnerabilities in CandyPress (CP) 4.1.1.26, and earlier 4.1.x versions, allow remote attackers to execute arbitrary SQL commands via the (1) idProduct and (2) options parameters to (a) ajax/ajax_optInventory.asp, or the (2) recid parameter to (b) ajax/ajax_getBrands.asp.    7.5  High  2017-01-03  2009-08-20  View
777  CVE-2008-0806  wyrd 1.4.3b allows local users to overwrite arbitrary files via a symlink attack on the wyrd-tmp.[USERID] temporary file.    3.6  Low  2017-01-03  2008-09-05  View

Page 540 of 17672, showing 5 records out of 88360 total, starting on record 2696, ending on 2700

Actions