NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6101  CVE-2008-6370  Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Contact Manager Pro 1.02 allows remote attackers to inject arbitrary web script or HTML via the DisplayFormat parameter.    4.3  Medium  2017-01-03  2009-06-19  View
6102  CVE-2008-6371  SQL injection vulnerability in login.asp in Ocean12 Membership Manager Pro allows remote attackers to execute arbitrary SQL commands via the username (Username parameter).    7.5  High  2017-01-03  2009-06-19  View
6103  CVE-2008-6372  SQL injection vulnerability in default.asp in Ocean12 FAQ Manager Pro 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter in a Cat action. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-03  2009-08-15  View
6104  CVE-2008-6373  Unspecified vulnerability in Nagios before 3.0.6 has unspecified impact and remote attack vectors related to CGI programs, "adaptive external commands," and "writing newlines and submitting service comments."    Medium  2017-01-03  2009-07-22  View
6105  CVE-2008-6374  CodefixerSoftware MailingListPro Free Edition stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to db/MailingList.mdb.    Medium  2017-01-03  2009-03-03  View

Page 1221 of 17672, showing 5 records out of 88360 total, starting on record 6101, ending on 6105

Actions