NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9 | CVE-2008-0009 | The vmsplice_to_user function in fs/splice.c in the Linux kernel 2.6.22 through 2.6.24 does not validate a certain userspace pointer before dereference, which might allow local users to access arbitrary kernel memory locations. | 2 | 2.1 | Low | 2017-01-03 | 2011-03-07 | View | |
65545 | CVE-2006-7002 | Cross-site scripting (XSS) vulnerability in add_comment.php in Wheatblog (wB) 1.1 allows remote attackers to inject arbitrary web script or HTML via the Email field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this issue may overlap CVE-2006-5195. | 2 | 4.3 | Medium | 2016-12-20 | 2008-11-15 | View | |
265 | CVE-2008-0280 | SQL injection vulnerability in index.php in MTCMS 2.0 and possibly earlier versions allows remote attackers to execute arbitrary SQL commands via the (1) a or (2) cid parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
65801 | CVE-2005-0007 | Unknown vulnerability in the DLSw dissector in Ethereal 0.10.6 through 0.10.8 allows remote attackers to cause a denial of service (application crash from assertion). | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
521 | CVE-2008-0546 | Multiple SQL injection vulnerabilities in CandyPress (CP) 4.1.1.26, and earlier 4.1.x versions, allow remote attackers to execute arbitrary SQL commands via the (1) idProduct and (2) options parameters to (a) ajax/ajax_optInventory.asp, or the (2) recid parameter to (b) ajax/ajax_getBrands.asp. | 2 | 7.5 | High | 2017-01-03 | 2009-08-20 | View |
Page 963 of 17672, showing 5 records out of 88360 total, starting on record 4811, ending on 4815