NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1443 | CVE-2008-1496 | Multiple SQL injection vulnerabilities in PEEL, possibly 3.x and earlier, allow remote attackers to execute arbitrary SQL commands via the (1) email parameter to (a) membre.php, and the (2) timestamp parameter to (b) the details action in achat/historique_commandes.php and (c) the facture action in factures/facture_html.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
1699 | CVE-2008-1759 | SQL injection vulnerability in the jeuxflash module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php, a different vector than CVE-2007-4922. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
67747 | CVE-2005-2038 | Fortibus CMS 4.0.0 allows remote attackers to modify information of other users, including Admin, via the "My info" page. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
68515 | CVE-2005-2840 | Multiple unknown vulnerabilities in MAXdev MD-Pro 1.0.72 and earlier have unknown impact and unspecified attack vectors, in one or more of the (1) Download, (2) Search, (3) Web links, (4) Blocks, (5) Messages, (6) News, (7) Comments, (8) Settings, (9) Stats or (10) subjects modules. | 2 | 10 | High | 2017-01-03 | 2008-09-05 | View | |
3235 | CVE-2008-3354 | Multiple PHP remote file inclusion vulnerabilities in the Newbb Plus (newbb_plus) module 0.93 in RunCMS 1.6.1 allow remote attackers to execute arbitrary PHP code via a URL in the (1) bbPath[path] parameter to votepolls.php and the (2) bbPath[root_theme] parameter to config.php, different vectors than CVE-2006-0659. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 1090 of 17672, showing 5 records out of 88360 total, starting on record 5446, ending on 5450