NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5696 | CVE-2008-5965 | Directory traversal vulnerability in index.php in LokiCMS 0.3.4 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to check for the existence of arbitrary files via a .. (dot dot) in the page parameter. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
5697 | CVE-2008-5966 | globsy_edit.php in Globsy 1.0 and earlier allows remote attackers to create or overwrite arbitrary files via a filename in the file parameter and file contents in the data parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-05 | View | |
5698 | CVE-2008-5967 | admin/index.php in PHP iCalendar 2.3.4, 2.24, and earlier does not require administrative authentication for an addupdate action, which allows remote attackers to upload a calendar (aka .ics) file with arbitrary content to the calendars/ directory outside the web root. | 2 | 7.5 | High | 2017-01-03 | 2009-02-05 | View | |
5699 | CVE-2008-5968 | Directory traversal vulnerability in print.php in PHP iCalendar 2.24 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cookie_language parameter in a phpicalendar_* cookie, a different vector than CVE-2006-1292. | 2 | 7.5 | High | 2017-01-03 | 2009-02-05 | View | |
5700 | CVE-2008-5969 | SQL injection vulnerability in popupproduct.php in Sunbyte e-Flower allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-27 | View |
Page 1140 of 17672, showing 5 records out of 88360 total, starting on record 5696, ending on 5700