NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6111 | CVE-2008-6380 | SQL injection vulnerability in default.aspx in Active Web Helpdesk 2.0 allows remote attackers to execute arbitrary SQL commands via the CategoryID parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-03-03 | View | |
6112 | CVE-2008-6381 | SQL injection vulnerability in modules/adresses/viewcat.php in bcoos 1.0.13, and possibly earlier, allows remote authenticated users with Addresses module permissions to execute arbitrary SQL commands via the cid parameter. | 2 | 4.6 | Medium | 2017-01-03 | 2009-03-04 | View | |
6113 | CVE-2008-6382 | ASP Portal 3.2.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to ASPPortal.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-03-03 | View | |
6114 | CVE-2008-6383 | SQL injection vulnerability in SpeedTech Organization and Resource Manager (Storm) 5.x before 5.x-1.14 and 6.x before 6.x-1.18, a module for Drupal, allows remote authenticated users with storm project access to execute arbitrary SQL commands via unspecified vectors. | 2 | 6 | Medium | 2017-01-03 | 2009-05-14 | View | |
6115 | CVE-2008-6384 | Multiple cross-site request forgery (CSRF) vulnerabilities in Comment Mail 5.x before 5.x-1.1, a module for Drupal, allow remote attackers to hijack the authentication of administrators. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-11 | View |
Page 1223 of 17672, showing 5 records out of 88360 total, starting on record 6111, ending on 6115