NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6111  CVE-2008-6380  SQL injection vulnerability in default.aspx in Active Web Helpdesk 2.0 allows remote attackers to execute arbitrary SQL commands via the CategoryID parameter.    7.5  High  2017-01-03  2009-03-03  View
6112  CVE-2008-6381  SQL injection vulnerability in modules/adresses/viewcat.php in bcoos 1.0.13, and possibly earlier, allows remote authenticated users with Addresses module permissions to execute arbitrary SQL commands via the cid parameter.    4.6  Medium  2017-01-03  2009-03-04  View
6113  CVE-2008-6382  ASP Portal 3.2.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to ASPPortal.mdb.    Medium  2017-01-03  2009-03-03  View
6114  CVE-2008-6383  SQL injection vulnerability in SpeedTech Organization and Resource Manager (Storm) 5.x before 5.x-1.14 and 6.x before 6.x-1.18, a module for Drupal, allows remote authenticated users with storm project access to execute arbitrary SQL commands via unspecified vectors.    Medium  2017-01-03  2009-05-14  View
6115  CVE-2008-6384  Multiple cross-site request forgery (CSRF) vulnerabilities in Comment Mail 5.x before 5.x-1.1, a module for Drupal, allow remote attackers to hijack the authentication of administrators.    6.8  Medium  2017-07-18  2017-07-11  View

Page 1223 of 17672, showing 5 records out of 88360 total, starting on record 6111, ending on 6115

Actions