NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5351  CVE-2008-5602  Natterchat 1.12 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for natterchat112.mdb.    Medium  2017-01-03  2009-01-29  View
5352  CVE-2008-5603  ASPTicker 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for news.mdb.    Medium  2017-01-03  2009-01-29  View
5353  CVE-2008-5604  Directory traversal vulnerability in index.php in My Simple Forum 3.0 and 4.1, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter.    6.8  Medium  2017-01-03  2009-01-29  View
5354  CVE-2008-5605  Multiple SQL injection vulnerabilities in ASP Portal allow remote attackers to execute arbitrary SQL commands via the (1) ItemID parameter to classifieds.asp and the (2) ID parameter to Events.asp.    7.5  High  2017-01-03  2009-03-18  View
5355  CVE-2008-5606  Gazatem QMail Mailing List Manager 1.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for qmail.mdb.    Medium  2017-01-03  2009-05-14  View

Page 1071 of 17672, showing 5 records out of 88360 total, starting on record 5351, ending on 5355

Actions