NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5996  CVE-2008-6265  Directory traversal vulnerability in portfolio/css.php in Cyberfolio 7.12.2 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme parameter.    6.8  Medium  2017-01-03  2009-07-22  View
5997  CVE-2008-6266  SQL injection vulnerability in links.php in Appalachian State University phpWebSite allows remote attackers to execute arbitrary SQL commands via the cid parameter in a viewlink action.    7.5  High  2017-01-03  2009-02-25  View
5998  CVE-2008-6267  Cross-site scripting (XSS) vulnerability in detail.php in Multi Languages WebShop Online 1.02 allows remote attackers to inject arbitrary web script or HTML via the name parameter.    4.3  Medium  2017-01-03  2009-03-13  View
5999  CVE-2008-6268  SQL injection vulnerability in detail.php in WEBBDOMAIN Multi Languages WebShop Online 1.02 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2009-05-15  View
6000  CVE-2008-6269  Joovili 3.1.4 allows remote attackers to bypass authentication and gain privileges as other users, including the administrator, by setting the (1) session_id, session_logged_in, and session_username cookies for user privileges; (2) session_admin_id, session_admin_username, and session_admin cookies for admin privileges; and (3) session_staff_id, session_staff_username, and session_staff cookies for staff users.    7.5  High  2017-01-03  2009-06-23  View

Page 1200 of 17672, showing 5 records out of 88360 total, starting on record 5996, ending on 6000

Actions