NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5731 | CVE-2008-6000 | The GDTdiIcpt.sys driver in G DATA AntiVirus 2008, InternetSecurity 2008, and TotalCare 2008 populates kernel registers with IOCTL 0x8317001c input values, which allows local users to cause a denial of service (system crash) or gain privileges via a crafted IOCTL request, as demonstrated by execution of the KeSetEvent function with modified register contents. | 2 | 7.2 | High | 2017-01-03 | 2011-03-07 | View | |
5732 | CVE-2008-6001 | index.php in ADN Forum 1.0b and earlier allows remote attackers to bypass authentication and gain sysop access via a fpusuario cookie composed of an initial sysop: string, an arbitrary password field, and a final :sysop:0 string. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
5733 | CVE-2008-6002 | Absolute path traversal vulnerability in sendfile.php in web-cp 0.5.7, when register_globals is enabled, allows remote attackers to read arbitrary files via a full pathname in the filelocation parameter. | 2 | 7.1 | High | 2017-01-03 | 2009-08-19 | View | |
5734 | CVE-2008-6003 | SQL injection vulnerability in sellers_othersitem.php in AJ Auction Pro Platinum 2 allows remote attackers to execute arbitrary SQL commands via the seller_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
5735 | CVE-2008-6004 | Cross-site scripting (XSS) vulnerability in search.php in AJ Auction Pro Platinum 2 allows remote attackers to inject arbitrary web script or HTML via the product parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 1147 of 17672, showing 5 records out of 88360 total, starting on record 5731, ending on 5735