NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3766 | CVE-2008-3904 | src/main-win.c in GPicView 0.1.9 in Lightweight X11 Desktop Environment (LXDE) allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a filename. | 2 | 7.5 | High | 2017-01-03 | 2008-09-24 | View | |
3767 | CVE-2008-3905 | resolv.rb in Ruby 1.8.5 and earlier, 1.8.6 before 1.8.6-p287, 1.8.7 before 1.8.7-p72, and 1.9 r18423 and earlier uses sequential transaction IDs and constant source ports for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. | 2 | 5.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
3768 | CVE-2008-3906 | CRLF injection vulnerability in Sys.Web in Mono 2.0 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the query string. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
3769 | CVE-2008-3907 | The open-in-browser command in newsbeuter before 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in a feed URL. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-19 | View | |
3770 | CVE-2008-3908 | Multiple buffer overflows in Princeton WordNet (wn) 3.0 allow context-dependent attackers to execute arbitrary code via (1) a long argument on the command line; a long (2) WNSEARCHDIR, (3) WNHOME, or (4) WNDBVERSION environment variable; or (5) a user-supplied dictionary (aka data file). NOTE: since WordNet itself does not run with special privileges, this issue only crosses privilege boundaries when WordNet is invoked as a third party component. | 2 | 10 | High | 2017-01-03 | 2009-01-29 | View |
Page 754 of 17672, showing 5 records out of 88360 total, starting on record 3766, ending on 3770