NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6006 | CVE-2008-6275 | Cross-site scripting (XSS) vulnerability in the User Karma module 5.x before 5.x-1.13 and 6.x before 6.x-1.0-beta1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified messages. | 2 | 4.3 | Medium | 2017-01-03 | 2011-01-20 | View | |
6007 | CVE-2008-6276 | Multiple SQL injection vulnerabilities in the User Karma module 5.x before 5.x-1.13 and 6.x before 6.x-1.0-beta1, a module for Drupal, allow remote authenticated administrators to execute arbitrary SQL commands via (1) a content type or (2) a voting API value. | 2 | 6.5 | Medium | 2017-01-03 | 2011-01-20 | View | |
6008 | CVE-2008-6277 | SQL injection vulnerability in product.php in RakhiSoftware Price Comparison Script (aka Shopping Cart) allows remote attackers to execute arbitrary SQL commands via the subcategory_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
6009 | CVE-2008-6278 | Multiple cross-site scripting (XSS) vulnerabilities in product.php in RakhiSoftware Price Comparison Script (aka Shopping Cart) allow remote attackers to inject arbitrary web script or HTML via the (1) category_id and (2) subcategory_id parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-02-26 | View | |
6010 | CVE-2008-6279 | RakhiSoftware Price Comparison Script (aka Shopping Cart) allows remote attackers to obtain sensitive information via an invalid PHPSESSID cookie, which reveals the installation path in an error message. | 2 | 7.8 | High | 2017-01-03 | 2009-02-26 | View |
Page 1202 of 17672, showing 5 records out of 88360 total, starting on record 6006, ending on 6010