NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5696  CVE-2008-5965  Directory traversal vulnerability in index.php in LokiCMS 0.3.4 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to check for the existence of arbitrary files via a .. (dot dot) in the page parameter.    Medium  2017-01-03  2011-03-07  View
5697  CVE-2008-5966  globsy_edit.php in Globsy 1.0 and earlier allows remote attackers to create or overwrite arbitrary files via a filename in the file parameter and file contents in the data parameter.    7.5  High  2017-01-03  2009-02-05  View
5698  CVE-2008-5967  admin/index.php in PHP iCalendar 2.3.4, 2.24, and earlier does not require administrative authentication for an addupdate action, which allows remote attackers to upload a calendar (aka .ics) file with arbitrary content to the calendars/ directory outside the web root.    7.5  High  2017-01-03  2009-02-05  View
5699  CVE-2008-5968  Directory traversal vulnerability in print.php in PHP iCalendar 2.24 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cookie_language parameter in a phpicalendar_* cookie, a different vector than CVE-2006-1292.    7.5  High  2017-01-03  2009-02-05  View
5700  CVE-2008-5969  SQL injection vulnerability in popupproduct.php in Sunbyte e-Flower allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2009-01-27  View

Page 1140 of 17672, showing 5 records out of 88360 total, starting on record 5696, ending on 5700

Actions