NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6266 | CVE-2008-6535 | admin/settings.php in PayPal eStores allows remote attackers to bypass intended access restrictions and change the administrative password via a direct request with a modified NewAdmin parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-03-27 | View | |
6267 | CVE-2008-6536 | Unspecified vulnerability in 7-zip before 4.5.7 has unknown impact and remote attack vectors, as demonstrated by the PROTOS GENOME test suite for Archive Formats (c10). | 2 | 10 | High | 2017-01-03 | 2013-05-29 | View | |
6268 | CVE-2008-6537 | LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the administrator password via the setup "do" action to LightNEasy.php, which is cleared from $_GET but later accessed using $_REQUEST. | 2 | 5 | Medium | 2017-01-03 | 2009-03-30 | View | |
6269 | CVE-2008-6538 | DeStar 0.2.2-5 allows remote attackers to add arbitrary users via a direct request to config/add/CfgOptUser. | 2 | 5 | Medium | 2017-01-03 | 2009-06-17 | View | |
6270 | CVE-2008-6539 | Static code injection vulnerability in user/settings/ in DeStar 0.2.2-5 allows remote authenticated users to add arbitrary administrators and inject arbitrary Python code into destar_cfg.py via a crafted pin parameter. | 2 | 6.5 | Medium | 2017-01-03 | 2009-06-17 | View |
Page 1254 of 17672, showing 5 records out of 88360 total, starting on record 6266, ending on 6270