NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6311  CVE-2008-6580  The Red_Reservations script for ColdFusion stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database via a direct request to (1) makered.mdb and (2) makered97.mdb.    Medium  2017-01-03  2009-04-18  View
6312  CVE-2008-6581  login.php in PhpAddEdit 1.3 allows remote attackers to bypass authentication and gain administrative access by setting the addedit cookie parameter.    7.5  High  2017-01-03  2009-04-02  View
6313  CVE-2008-6582  SQL injection vulnerability in index.php in Miniweb 2.0 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.    7.5  High  2017-01-03  2009-04-02  View
6314  CVE-2008-6583  Buffer overflow in BS.player 2.27 build 959 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .SRT file.    9.3  High  2017-01-03  2009-04-06  View
6315  CVE-2008-6584  html/index.php in TorrentFlux 2.3 allows remote authenticated users to execute arbitrary code via a URL with a file containing an executable extension in the url_upload parameter, which is downloaded by TorrentFlux and can be accessed via a direct request in a html/downloads/ user directory.    Medium  2017-01-03  2009-04-06  View

Page 1263 of 17672, showing 5 records out of 88360 total, starting on record 6311, ending on 6315

Actions