NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4451  CVE-2008-4637  Cross-site scripting (XSS) vulnerability in cpCommerce before 1.2.4 allows remote attackers to inject arbitrary web script or HTML via unknown vectors in the advanced search feature. NOTE: this is probably a variant of CVE-2008-4121.    4.3  Medium  2017-01-03  2009-07-22  View
4452  CVE-2008-4638  qioadmin in the Quick I/O for Database feature in Symantec Veritas File System (VxFS) on HP-UX, and before 5.0 MP3 on Solaris, Linux, and AIX, allows local users to read arbitrary files by causing qioadmin to write a file"s content to standard error in an error message.    4.6  Medium  2017-01-03  2011-08-10  View
4453  CVE-2008-4639  jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file.    4.6  Medium  2017-01-03  2010-12-28  View
4454  CVE-2008-4640  The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files via vectors involving a modified input filename in which (1) a final "z" character is replaced by a "t" character or (2) a final "t" character is replaced by a "z" character.    3.6  Low  2017-01-03  2008-12-03  View
4455  CVE-2008-4641  The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows attackers to execute arbitrary commands via shell metacharacters in unspecified input.    10  High  2017-01-03  2008-12-03  View

Page 891 of 17672, showing 5 records out of 88360 total, starting on record 4451, ending on 4455

Actions