NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3981 | CVE-2008-4125 | The search function in phpBB 2.x provides a search_id value that leaks the state of PHP"s PRNG, which allows remote attackers to obtain potentially sensitive information, as demonstrated by a cross-application attack against WordPress, a different vulnerability than CVE-2006-0632. | 2 | 5 | Medium | 2017-01-03 | 2008-10-25 | View | |
3982 | CVE-2008-4126 | PyDNS (aka python-dns) before 2.3.1-5 in Debian GNU/Linux does not use random source ports for DNS requests and does not use random transaction IDs for DNS retries, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-4099. | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-19 | View | |
3983 | CVE-2008-4127 | Mshtml.dll in Microsoft Internet Explorer 7 Gold 7.0.5730 and 8 Beta 8.0.6001 on Windows XP SP2 allows remote attackers to cause a denial of service (failure of subsequent image rendering) via a crafted PNG file, related to an infinite loop in the CDwnTaskExec::ThreadExec function. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
3984 | CVE-2008-4128 | Multiple cross-site request forgery (CSRF) vulnerabilities in the HTTP Administration component in Cisco IOS 12.4 on the 871 Integrated Services Router allow remote attackers to execute arbitrary commands via (1) a certain "show privilege" command to the /level/15/exec/- URI, and (2) a certain "alias exec" command to the /level/15/exec/-/configure/http URI. NOTE: some of these details are obtained from third party information. | 2 | 9.3 | High | 2017-01-03 | 2008-09-24 | View | |
3985 | CVE-2008-4129 | Gallery before 1.5.9, and 2.x before 2.2.6, does not properly handle ZIP archives containing symbolic links, which allows remote authenticated users to conduct directory traversal attacks and read arbitrary files via vectors related to the archive upload (aka zip upload) functionality. | 2 | 4 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 797 of 17672, showing 5 records out of 88360 total, starting on record 3981, ending on 3985