NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4021  CVE-2008-4165  admin/user/create_user.php in Kolab Groupware Server 1.0.0 places a user password in an HTTP GET request, which allows local administrators, and possibly remote attackers, to obtain cleartext passwords by reading the ssl_access_log file or the referer string.    Medium  2017-01-03  2009-07-23  View
4022  CVE-2008-4166  Integer overflow in the JavaScript engine in Avant Browser 11.7 Build 9 and earlier allows remote attackers to cause a denial of service (application crash) by attempting to URL encode a string containing many instances of an invalid character.    4.3  Medium  2017-01-03  2009-01-29  View
4023  CVE-2008-4167  useradmin.php in Easy Photo Gallery (aka Ezphotogallery) 2.1 does not require administrative authentication, which allows remote attackers to (1) add or (2) remove an Administrator account.    6.4  Medium  2017-01-03  2009-08-19  View
4024  CVE-2008-4168  Cross-site scripting (XSS) vulnerability in verify_login.jsp in Pro2col Stingray FTS allows remote attackers to inject arbitrary web script or HTML via the form_username parameter (aka user name field).    4.3  Medium  2017-01-03  2009-01-29  View
4025  CVE-2008-4169  SQL injection vulnerability in detaillist.php in iScripts EasyIndex, possibly 1.0, allows remote attackers to execute arbitrary SQL commands via the produid parameter.    7.5  High  2017-01-03  2009-08-19  View

Page 805 of 17672, showing 5 records out of 88360 total, starting on record 4021, ending on 4025

Actions