NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3686  CVE-2008-3824  Cross-site scripting (XSS) vulnerability in (1) Text_Filter/Filter/xss.php in Horde 3.1.x before 3.1.9 and 3.2.x before 3.2.2 and (2) externalinput.php in Popoon r22196 and earlier allows remote attackers to inject arbitrary web script or HTML by using / (slash) characters as replacements for spaces in an HTML e-mail message.    4.3  Medium  2017-01-03  2011-03-07  View
3687  CVE-2008-3825  pam_krb5 2.2.14 in Red Hat Enterprise Linux (RHEL) 5 and earlier, when the existing_ticket option is enabled, uses incorrect privileges when reading a Kerberos credential cache, which allows local users to gain privileges by setting the KRB5CCNAME environment variable to an arbitrary cache filename and running the (1) su or (2) sudo program. NOTE: there may be a related vector involving sshd that has limited relevance.    4.4  Medium  2017-01-03  2011-02-17  View
3688  CVE-2008-3826  Unspecified vulnerability in Condor before 7.0.5 allows attackers to execute jobs as other users via unknown vectors.    4.6  Medium  2017-01-03  2011-03-07  View
3689  CVE-2008-3827  Multiple integer underflows in the Real demuxer (demux_real.c) in MPlayer 1.0_rc2 and earlier allow remote attackers to cause a denial of service (process termination) and possibly execute arbitrary code via a crafted video file that causes the stream_read function to read or write arbitrary memory.    9.3  High  2017-01-03  2011-03-07  View
3690  CVE-2008-3828  Stack-based buffer overflow in the condor_ schedd daemon in Condor before 7.0.5 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.    4.6  Medium  2017-01-03  2011-03-07  View

Page 738 of 17672, showing 5 records out of 88360 total, starting on record 3686, ending on 3690

Actions