NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5776  CVE-2008-6045  Session fixation vulnerability in shopping_cart.php in xt:Commerce 3.0.4 and earlier allows remote attackers to hijack web sessions by setting the XTCsid parameter.    6.8  Medium  2017-01-03  2009-08-19  View
5777  CVE-2008-6046  SQL injection vulnerability in ADbNewsSender before 1.5.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors in (1) opt_in_out.php.inc, (2) confirmation.php.inc, and (3) renewal.php.inc in mailinglist/.    7.5  High  2017-01-03  2009-02-04  View
5778  CVE-2008-6047  Cross-site scripting (XSS) vulnerability in ADbNewsSender before 1.5.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) subscribing and (2) unsubscribing.    4.3  Medium  2017-01-03  2009-02-04  View
5779  CVE-2008-6048  Multiple cross-site request forgery (CSRF) vulnerabilities in TangoCMS before 2.2.0 allow remote attackers to hijack the authentication of administrators.    Medium  2017-01-03  2009-04-02  View
5780  CVE-2008-6049  ** REJECT ** SQL injection vulnerability in index.php in TinyMCE 2.0.1 allows remote attackers to execute arbitrary SQL commands via the menuID parameter. NOTE: CVE and multiple reliable third parties dispute this issue, since TinyMCE does not contain index.php or any PHP code. This may be an issue in a product that has integrated TinyMCE.        2017-01-03  2009-03-21  View

Page 1156 of 17672, showing 5 records out of 88360 total, starting on record 5776, ending on 5780

Actions