NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3686 | CVE-2008-3824 | Cross-site scripting (XSS) vulnerability in (1) Text_Filter/Filter/xss.php in Horde 3.1.x before 3.1.9 and 3.2.x before 3.2.2 and (2) externalinput.php in Popoon r22196 and earlier allows remote attackers to inject arbitrary web script or HTML by using / (slash) characters as replacements for spaces in an HTML e-mail message. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
3687 | CVE-2008-3825 | pam_krb5 2.2.14 in Red Hat Enterprise Linux (RHEL) 5 and earlier, when the existing_ticket option is enabled, uses incorrect privileges when reading a Kerberos credential cache, which allows local users to gain privileges by setting the KRB5CCNAME environment variable to an arbitrary cache filename and running the (1) su or (2) sudo program. NOTE: there may be a related vector involving sshd that has limited relevance. | 2 | 4.4 | Medium | 2017-01-03 | 2011-02-17 | View | |
3688 | CVE-2008-3826 | Unspecified vulnerability in Condor before 7.0.5 allows attackers to execute jobs as other users via unknown vectors. | 2 | 4.6 | Medium | 2017-01-03 | 2011-03-07 | View | |
3689 | CVE-2008-3827 | Multiple integer underflows in the Real demuxer (demux_real.c) in MPlayer 1.0_rc2 and earlier allow remote attackers to cause a denial of service (process termination) and possibly execute arbitrary code via a crafted video file that causes the stream_read function to read or write arbitrary memory. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View | |
3690 | CVE-2008-3828 | Stack-based buffer overflow in the condor_ schedd daemon in Condor before 7.0.5 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors. | 2 | 4.6 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 738 of 17672, showing 5 records out of 88360 total, starting on record 3686, ending on 3690