NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6311 | CVE-2008-6580 | The Red_Reservations script for ColdFusion stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database via a direct request to (1) makered.mdb and (2) makered97.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-04-18 | View | |
6312 | CVE-2008-6581 | login.php in PhpAddEdit 1.3 allows remote attackers to bypass authentication and gain administrative access by setting the addedit cookie parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-04-02 | View | |
6313 | CVE-2008-6582 | SQL injection vulnerability in index.php in Miniweb 2.0 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action. | 2 | 7.5 | High | 2017-01-03 | 2009-04-02 | View | |
6314 | CVE-2008-6583 | Buffer overflow in BS.player 2.27 build 959 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .SRT file. | 2 | 9.3 | High | 2017-01-03 | 2009-04-06 | View | |
6315 | CVE-2008-6584 | html/index.php in TorrentFlux 2.3 allows remote authenticated users to execute arbitrary code via a URL with a file containing an executable extension in the url_upload parameter, which is downloaded by TorrentFlux and can be accessed via a direct request in a html/downloads/ user directory. | 2 | 6 | Medium | 2017-01-03 | 2009-04-06 | View |
Page 1263 of 17672, showing 5 records out of 88360 total, starting on record 6311, ending on 6315