NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3466 | CVE-2008-3596 | Cross-site scripting (XSS) vulnerability in Harmoni before 1.4.7 allows remote attackers to inject arbitrary web script or HTML via the Username field, which is inserted into logs that could be rendered when viewed by an administrator. | 2 | 4.3 | Medium | 2017-01-03 | 2008-10-07 | View | |
3467 | CVE-2008-3597 | Skulltag before 0.97d2-RC6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) by sending a "command 29" packet when the player is not in the game. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
3468 | CVE-2008-3598 | Multiple SQL injection vulnerabilities in psipuss 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the Cid parameter to categories.php or (2) the Username parameter to login.php. | 2 | 7.5 | High | 2017-01-03 | 2012-11-05 | View | |
3469 | CVE-2008-3599 | SQL injection vulnerability in image.php in OpenImpro 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
3470 | CVE-2008-3600 | Directory traversal vulnerability in contrib/phpBB2/modules.php in Gallery 1.5.7 and 1.6-alpha3, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the phpEx parameter within a modload action. | 2 | 6.8 | Medium | 2017-01-03 | 2009-03-18 | View |
Page 694 of 17672, showing 5 records out of 88360 total, starting on record 3466, ending on 3470