NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6341 | CVE-2008-6610 | Absolute path traversal vulnerability in phpcksec.php in Stefan Ott phpcksec 0.2.0 allows remote attackers to list arbitrary directories and read arbitrary files via a full pathname in the file parameter. | 2 | 6.4 | Medium | 2017-01-03 | 2009-04-06 | View | |
6342 | CVE-2008-6611 | SQL injection vulnerability in index.php in Minimal ABlog 0.4 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-04-06 | View | |
6343 | CVE-2008-6612 | Unrestricted file upload vulnerability in admin/uploader.php in Minimal ABlog 0.4 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in img/. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-06 | View | |
6344 | CVE-2008-6613 | uploader.php in minimal-ablog 0.4 does not properly restrict access, which allows remote attackers to gain administrative privileges via a direct request. | 2 | 7.5 | High | 2017-01-03 | 2009-04-06 | View | |
6345 | CVE-2008-6614 | Multiple SQL injection vulnerabilities in microcms-admin-login.php in Implied By Design (IBD) Micro CMS 3.5 (aka 0.3.5) allow remote attackers to execute arbitrary SQL commands via (1) the administrators_username parameter (aka the Username field) or (2) the administrators_pass parameter (aka the Password field). | 2 | 7.5 | High | 2017-01-03 | 2009-10-01 | View |
Page 1269 of 17672, showing 5 records out of 88360 total, starting on record 6341, ending on 6345