NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4056 | CVE-2008-4200 | Opera before 9.52 does not ensure that the address field of a news feed represents the feed"s actual URL, which allows remote attackers to change this field to display the URL of a page containing web script controlled by the attacker. | 2 | 6.4 | Medium | 2017-01-03 | 2011-02-01 | View | |
4057 | CVE-2008-4201 | Heap-based buffer overflow in the decodeMP4file function (frontend/main.c) in FAAD2 2.6.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted MPEG-4 (MP4) file. | 2 | 9.3 | High | 2017-01-03 | 2011-01-03 | View | |
4058 | CVE-2008-4202 | SQL injection vulnerability in index.php in Gonafish LinksCaffePRO 4.5 allows remote attackers to execute arbitrary SQL commands via the idd parameter in a deadlink action. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
4059 | CVE-2008-4203 | SQL injection vulnerability in cn_users.php in CzarNews 1.20 and earlier allows remote attackers to execute arbitrary SQL commands via a recook cookie. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
4060 | CVE-2008-4204 | SQL injection vulnerability in city.asp in SoftAcid Hotel Reservation System (HRS) allows remote attackers to execute arbitrary SQL commands via the city parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View |
Page 812 of 17672, showing 5 records out of 88360 total, starting on record 4056, ending on 4060