NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
531  CVE-2008-0556  Cross-site request forgery (CSRF) vulnerability in OpenCA PKI 0.9.2.5, and possibly earlier versions, allows remote attackers to perform unauthorized actions as authorized users via a link or IMG tag to RAServer.    7.5  High  2017-01-03  2011-03-07  View
532  CVE-2008-0557  SQL injection vulnerability in index.php in the CatalogShop (com_catalogshop) 1.0b1 componenent for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.    7.5  High  2017-01-03  2009-09-15  View
533  CVE-2008-0558  Cross-site scripting (XSS) vulnerability in Uniwin eCart Professional before 2.0.16 allows remote attackers to inject arbitrary web script or HTML via the rp parameter to cartView.asp and unspecified other components. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-03  2008-09-05  View
534  CVE-2008-0559  Multiple directory traversal vulnerabilities in Nilson"s Blogger 0.11 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the permalink parameter in core.php, accessed through index.php; and (2) the thispost parameter in comments.php.    Medium  2017-01-03  2008-09-05  View
535  CVE-2008-0560  ** DISPUTED ** PHP remote file inclusion vulnerability in cforms-css.php in Oliver Seidel cforms (contactforms), a Wordpress plugin, allows remote attackers to execute arbitrary PHP code via a URL in the tm parameter. NOTE: CVE disputes this issue for 7.3, since there is no tm parameter, and the code exits with a fatal error due to a call to an undefined function.    6.8  Medium  2017-01-03  2009-09-15  View

Page 107 of 17672, showing 5 records out of 88360 total, starting on record 531, ending on 535

Actions