NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4451 | CVE-2008-4637 | Cross-site scripting (XSS) vulnerability in cpCommerce before 1.2.4 allows remote attackers to inject arbitrary web script or HTML via unknown vectors in the advanced search feature. NOTE: this is probably a variant of CVE-2008-4121. | 2 | 4.3 | Medium | 2017-01-03 | 2009-07-22 | View | |
4452 | CVE-2008-4638 | qioadmin in the Quick I/O for Database feature in Symantec Veritas File System (VxFS) on HP-UX, and before 5.0 MP3 on Solaris, Linux, and AIX, allows local users to read arbitrary files by causing qioadmin to write a file"s content to standard error in an error message. | 2 | 4.6 | Medium | 2017-01-03 | 2011-08-10 | View | |
4453 | CVE-2008-4639 | jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file. | 2 | 4.6 | Medium | 2017-01-03 | 2010-12-28 | View | |
4454 | CVE-2008-4640 | The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files via vectors involving a modified input filename in which (1) a final "z" character is replaced by a "t" character or (2) a final "t" character is replaced by a "z" character. | 2 | 3.6 | Low | 2017-01-03 | 2008-12-03 | View | |
4455 | CVE-2008-4641 | The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows attackers to execute arbitrary commands via shell metacharacters in unspecified input. | 2 | 10 | High | 2017-01-03 | 2008-12-03 | View |
Page 891 of 17672, showing 5 records out of 88360 total, starting on record 4451, ending on 4455