NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5851 | CVE-2008-6120 | SQL injection vulnerability in profile_comments.php in SocialEngine (SE) 2.7 and earlier allows remote attackers to execute arbitrary SQL commands via the comment_secure parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-03-11 | View | |
5852 | CVE-2008-6121 | CRLF injection vulnerability in SocialEngine (SE) 2.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the PHPSESSID cookie. | 2 | 7.5 | High | 2017-01-03 | 2009-04-24 | View | |
5853 | CVE-2008-6122 | The web management interface in Netgear WGR614v9 allows remote attackers to cause a denial of service (crash) via a request that contains a question mark ("?"). | 2 | 7.8 | High | 2017-01-03 | 2011-03-07 | View | |
5854 | CVE-2008-6123 | The netsnmp_udp_fmtaddr function (snmplib/snmpUDPDomain.c) in net-snmp 5.0.9 through 5.4.2.1, when using TCP wrappers for client authorization, does not properly parse hosts.allow rules, which allows remote attackers to bypass intended access restrictions and execute SNMP queries, related to "source/destination IP address confusion." | 2 | 5 | Medium | 2017-01-03 | 2010-08-21 | View | |
5855 | CVE-2008-6124 | SQL injection vulnerability in the hotpot_delete_selected_attempts function in report.php in the HotPot module in Moodle 1.6 before 1.6.7, 1.7 before 1.7.5, 1.8 before 1.8.6, and 1.9 before 1.9.2 allows remote attackers to execute arbitrary SQL commands via a crafted selected attempt. | 2 | 7.5 | High | 2017-01-03 | 2009-02-13 | View |
Page 1171 of 17672, showing 5 records out of 88360 total, starting on record 5851, ending on 5855