NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6516  CVE-2008-6785  Unrestricted file upload vulnerability in Mini File Host 1.5 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory, as demonstrated by creating a name.php file.    6.8  Medium  2017-01-03  2009-05-04  View
6517  CVE-2008-6786  Multiple directory traversal vulnerabilities in geekigeeki.py in GeekiGeeki before 3.0 allow remote attackers to read arbitrary files via directory traversal sequences in a pagename argument in the (1) handle_edit and (2) handle_raw functions.    Medium  2017-01-03  2009-05-04  View
6518  CVE-2008-6787  SQL injection vulnerability in administrator/index.php in Lizardware CMS 0.6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the user.    7.5  High  2017-01-03  2009-05-05  View
6519  CVE-2008-6788  SQL injection vulnerability in MindDezign Photo Gallery 2.2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter in an info action to index.php.    5.1  Medium  2017-01-03  2009-05-05  View
6520  CVE-2008-6789  SQL injection vulnerability in MindDezign Photo Gallery 2.2 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action to the admin module in index.php, a different vector than CVE-2008-6788.    5.1  Medium  2017-01-03  2009-05-13  View

Page 1304 of 17672, showing 5 records out of 88360 total, starting on record 6516, ending on 6520

Actions