NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
546 | CVE-2008-0571 | The point moderation form in the Userpoints 4.7.x before 4.7.x-2.3, 5.x-2 before 5.x-2.16, and 5.x-3 before 5.x-3.3 module for Drupal does not follow Drupal"s Forms API submission model, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and manipulate points. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
547 | CVE-2008-0572 | Multiple PHP remote file inclusion vulnerabilities in Mindmeld 1.2.0.10 allow remote attackers to execute arbitrary PHP code via a URL in the MM_GLOBALS[home] parameter to (1) acweb/admin_index.php; and (2) ask.inc.php, (3) learn.inc.php, (4) manage.inc.php, (5) mind.inc.php, and (6) sensory.inc.php in include/. | 2 | 6.8 | Medium | 2017-01-03 | 2008-10-11 | View | |
548 | CVE-2008-0573 | IPSecDrv.sys 10.4.0.12 in SafeNET HighAssurance Remote and SoftRemote allows local users to gain privileges via a crafted IPSECDRV_IOCTL IOCTL request. | 2 | 7.2 | High | 2017-01-03 | 2011-03-07 | View | |
549 | CVE-2008-0574 | Cross-site scripting (XSS) vulnerability in index.php in webSPELL 4.01.02 allows remote attackers to inject arbitrary web script or HTML via the sort parameter in a whoisonline action. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
550 | CVE-2008-0575 | Cross-site request forgery (CSRF) vulnerability in admin/admincenter.php in webSPELL 4.01.02 allows remote attackers to assign the superadmin privilege level to arbitrary accounts as administrators via an "update member" action. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 110 of 17672, showing 5 records out of 88360 total, starting on record 546, ending on 550