NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4146 | CVE-2008-4318 | Observer 0.3.2.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter to (1) whois.php or (2) netcmd.php. | 2 | 10 | High | 2017-01-03 | 2009-01-29 | View | |
4147 | CVE-2008-4319 | fileadmin.php in Libra File Manager (aka Libra PHP File Manager) 1.18 and earlier allows remote attackers to bypass authentication, and read arbitrary files, modify arbitrary files, and list arbitrary directories, by inserting certain user and isadmin parameters in the query string. | 2 | 6.4 | Medium | 2017-01-03 | 2009-08-19 | View | |
4148 | CVE-2008-4320 | Multiple cross-site scripting (XSS) vulnerabilities in OpenNMS before 1.5.94 allow remote attackers to inject arbitrary web script or HTML via (1) the j_username parameter to j_acegi_security_check, (2) the username parameter to notification/list.jsp, and (3) the filter parameter to event/list. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View | |
4149 | CVE-2008-4321 | Buffer overflow in FlashGet (formerly JetCar) FTP 1.9 allows remote FTP servers to execute arbitrary code via a long response to the PWD command. | 2 | 9.3 | High | 2017-01-03 | 2009-03-18 | View | |
4150 | CVE-2008-4322 | Stack-based buffer overflow in RealFlex Technologies Ltd. RealWin Server 2.0, as distributed by DATAC, allows remote attackers to execute arbitrary code via a crafted FC_INFOTAG/SET_CONTROL packet. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View |
Page 830 of 17672, showing 5 records out of 88360 total, starting on record 4146, ending on 4150