NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4186 | CVE-2008-4358 | Unspecified vulnerability in class/theme.class.php in SPAW Editor PHP Edition before 2.0.8.1 has unknown impact and attack vectors, probably related to directory traversal sequences in the theme name. | 2 | 10 | High | 2017-01-03 | 2009-08-19 | View | |
4187 | CVE-2008-4359 | lighttpd before 1.4.20 compares URIs to patterns in the (1) url.redirect and (2) url.rewrite configuration settings before performing URL decoding, which might allow remote attackers to bypass intended access restrictions, and obtain sensitive information or possibly modify data. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
4188 | CVE-2008-4360 | mod_userdir in lighttpd before 1.4.20, when a case-insensitive operating system or filesystem is used, performs case-sensitive comparisons on filename components in configuration options, which might allow remote attackers to bypass intended access restrictions, as demonstrated by a request for a .PHP file when there is a configuration rule for .php files. | 2 | 7.8 | High | 2017-01-03 | 2011-03-07 | View | |
4189 | CVE-2008-4361 | Directory traversal vulnerability in PowerPortal 2.0.13 allows remote attackers to list and possibly read arbitrary files via a .. (dot dot) in the path parameter to the default URI. | 2 | 7.8 | High | 2017-01-03 | 2012-10-29 | View | |
4190 | CVE-2008-4362 | The Virtual Token driver (vdlptokn.sys) 1.0.2.43 in DESlock+ 3.2.7 allows local users to cause a denial of service (system crash) via a crafted IOCTL request to DeviceDLPTokenWalter0. | 2 | 4.9 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 838 of 17672, showing 5 records out of 88360 total, starting on record 4186, ending on 4190