NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6516 | CVE-2008-6785 | Unrestricted file upload vulnerability in Mini File Host 1.5 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory, as demonstrated by creating a name.php file. | 2 | 6.8 | Medium | 2017-01-03 | 2009-05-04 | View | |
6517 | CVE-2008-6786 | Multiple directory traversal vulnerabilities in geekigeeki.py in GeekiGeeki before 3.0 allow remote attackers to read arbitrary files via directory traversal sequences in a pagename argument in the (1) handle_edit and (2) handle_raw functions. | 2 | 5 | Medium | 2017-01-03 | 2009-05-04 | View | |
6518 | CVE-2008-6787 | SQL injection vulnerability in administrator/index.php in Lizardware CMS 0.6.0 and earlier allows remote attackers to execute arbitrary SQL commands via the user. | 2 | 7.5 | High | 2017-01-03 | 2009-05-05 | View | |
6519 | CVE-2008-6788 | SQL injection vulnerability in MindDezign Photo Gallery 2.2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter in an info action to index.php. | 2 | 5.1 | Medium | 2017-01-03 | 2009-05-05 | View | |
6520 | CVE-2008-6789 | SQL injection vulnerability in MindDezign Photo Gallery 2.2 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action to the admin module in index.php, a different vector than CVE-2008-6788. | 2 | 5.1 | Medium | 2017-01-03 | 2009-05-13 | View |
Page 1304 of 17672, showing 5 records out of 88360 total, starting on record 6516, ending on 6520