NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3108 | CVE-2008-3225 | Joomla! before 1.5.4 allows attackers to access administration functionality, which has unknown impact and attack vectors related to a missing "LDAP security fix." | 2 | 10 | High | 2017-01-03 | 2009-06-09 | View | |
3364 | CVE-2008-3491 | SQL injection vulnerability in go.php in Scripts24 iPost 1.0.1 and iTGP 1.0.4 allows remote attackers to execute arbitrary SQL commands via the id parameter in a report action. | 2 | 7.5 | High | 2017-01-03 | 2009-03-18 | View | |
3620 | CVE-2008-3755 | SQL injection vulnerability in view.php in YourFreeWorld Classifieds Script allows remote attackers to execute arbitrary SQL commands via the category parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-26 | View | |
69156 | CVE-2005-3495 | Ar-blog 5.2 and earlier allows remote attackers to bypass authentication by modifying cookies. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
4132 | CVE-2008-4304 | general/login.php in phpCollab 2.5 rc3 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified input related to the SSL_CLIENT_CERT environment variable. NOTE: in some environments, SSL_CLIENT_CERT always has a base64-encoded string value, which may impose constraints on injection for typical shells. | 2 | 10 | High | 2017-01-03 | 2008-12-23 | View |
Page 1300 of 17672, showing 5 records out of 88360 total, starting on record 6496, ending on 6500