NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6461 | CVE-2008-6730 | Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPLink Pro 0.0.6 and 0.0.7, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the checkuser parameter (aka username field), or (2) the checkpass parameter (aka password field), to admin/index.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-20 | View | |
6462 | CVE-2008-6731 | Unrestricted file upload vulnerability in submitlink.php in FlexPHPLink Pro 0.0.7 allows remote attackers to execute arbitrary PHP code by uploading a file with an executable extension, then accessing it via a direct request to the renamed file in linkphoto/. | 2 | 9.3 | High | 2017-01-03 | 2009-04-20 | View | |
6463 | CVE-2008-6732 | Cross-site scripting (XSS) vulnerability in the Language skin object in DotNetNuke before 4.8.4 allows remote attackers to inject arbitrary web script or HTML via "newly generated paths." | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-15 | View | |
6464 | CVE-2008-6733 | Cross-site scripting (XSS) vulnerability in the error handling page in DotNetNuke 4.6.2 through 4.8.3 allows remote attackers to inject arbitrary web script or HTML via the querystring parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-15 | View | |
6465 | CVE-2008-6734 | Directory traversal vulnerability in Public/index.php in Keller Web Admin CMS 0.94 Pro allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter. | 2 | 9.3 | High | 2017-01-03 | 2009-04-22 | View |
Page 1293 of 17672, showing 5 records out of 88360 total, starting on record 6461, ending on 6465