NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6316 | CVE-2008-6585 | Cross-site request forgery (CSRF) vulnerability in html/admin.php in TorrentFlux 2.3 allows remote attackers to hijack the authentication of administrators for requests that add new accounts via the addUser action. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-06 | View | |
6317 | CVE-2008-6586 | Cross-site request forgery (CSRF) vulnerability in gui/index.php in µTorrent (uTorrent) WebUI 0.315 allows remote attackers to (1) hijack the authentication of users for requests that force the download of arbitrary torrent files via the add-url action and (2) hijack the authentication of administrators for requests that modify the administrator account via the setsetting action. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-06 | View | |
6318 | CVE-2008-6587 | Cross-site request forgery (CSRF) vulnerability in index.tmpl in Vuze (formerly Azureus HTML WebUI), probably 0.7.6, allows remote attackers to hijack the authentication of users for requests that force the download of arbitrary torrent files via the upurl parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-06 | View | |
6319 | CVE-2008-6588 | Aztech ADSL2/2+ 4-port router has a default "isp" account with a default "isp" password, which allows remote attackers to obtain access if this default is not changed. | 2 | 10 | High | 2017-01-03 | 2009-04-30 | View | |
6320 | CVE-2008-6589 | Multiple cross-site scripting (XSS) vulnerabilities in LightNEasy "no database" (aka flat) version 1.2.2, and possibly SQLite version 1.2.2, allow remote attackers to inject arbitrary web script or HTML via the page parameter to (1) index.php and (2) LightNEasy.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 1264 of 17672, showing 5 records out of 88360 total, starting on record 6316, ending on 6320