NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
416  CVE-2008-0438  Cross-site scripting (XSS) vulnerability in the font rendering functionality in Novemberborn sIFR 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the txt parameter to a Flash (SWF) file, as demonstrated by fonts/FuturaLt.swf.    4.3  Medium  2017-01-03  2012-10-29  View
417  CVE-2008-0439  Cross-site scripting (XSS) vulnerability in templates/default/admincp/attachments_header.php in DeluxeBB 1.1 allows remote attackers to inject arbitrary web script or HTML via the lang_listofmatches parameter.    4.3  Medium  2017-01-03  2008-09-05  View
418  CVE-2008-0440  AlstraSoft Forum Pay Per Post Exchange 2.0 stores passwords in cleartext, which makes it easier for attackers to access user accounts.    Medium  2017-01-03  2008-09-05  View
419  CVE-2008-0441  IBM Tivoli Business Service Manager (TBSM) 4.1.1 stores passwords in cleartext (1) after external authentication, which triggers writing the password to SM_server.log; and (2) after a reconfig action; which allows local users to obtain sensitive information.    2.1  Low  2017-01-03  2011-03-07  View
420  CVE-2008-0442  PHP remote file inclusion vulnerability in inc/linkbar.php in Small Axe Weblog 0.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the ffile parameter, a different vector than CVE-2008-0376. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-03  2008-09-05  View

Page 84 of 17672, showing 5 records out of 88360 total, starting on record 416, ending on 420

Actions