NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6461  CVE-2008-6730  Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPLink Pro 0.0.6 and 0.0.7, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the checkuser parameter (aka username field), or (2) the checkpass parameter (aka password field), to admin/index.php.    6.8  Medium  2017-01-03  2009-04-20  View
6462  CVE-2008-6731  Unrestricted file upload vulnerability in submitlink.php in FlexPHPLink Pro 0.0.7 allows remote attackers to execute arbitrary PHP code by uploading a file with an executable extension, then accessing it via a direct request to the renamed file in linkphoto/.    9.3  High  2017-01-03  2009-04-20  View
6463  CVE-2008-6732  Cross-site scripting (XSS) vulnerability in the Language skin object in DotNetNuke before 4.8.4 allows remote attackers to inject arbitrary web script or HTML via "newly generated paths."    4.3  Medium  2017-01-03  2009-08-15  View
6464  CVE-2008-6733  Cross-site scripting (XSS) vulnerability in the error handling page in DotNetNuke 4.6.2 through 4.8.3 allows remote attackers to inject arbitrary web script or HTML via the querystring parameter.    4.3  Medium  2017-01-03  2009-08-15  View
6465  CVE-2008-6734  Directory traversal vulnerability in Public/index.php in Keller Web Admin CMS 0.94 Pro allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter.    9.3  High  2017-01-03  2009-04-22  View

Page 1293 of 17672, showing 5 records out of 88360 total, starting on record 6461, ending on 6465

Actions