NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6601  CVE-2008-6870  Merlix Educate Server allows remote attackers to bypass intended security restrictions and obtain sensitive information via a direct request to (1) config.asp and (2) users.asp.    Medium  2017-01-03  2009-07-24  View
6602  CVE-2008-6871  Merlix Educate Server stores db.mdb under the web root with insufficient access control, which allows remote attackers to obtain unspecified sensitive information via a direct request.    Medium  2017-01-03  2009-07-24  View
6603  CVE-2008-6872  ASPThai.NET ASPThai Forums 8.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/aspthaiForum.mdb.    Medium  2017-01-03  2009-07-24  View
6604  CVE-2008-6873  SQL injection vulnerability in Active Web Mail 4.0 allows remote attackers to execute arbitrary SQL commands via the TabOpenQuickTab1 parameter to (1) popaccounts.aspx, (2) addressbook.aspx, and (3) emails.aspx.    7.5  High  2017-01-03  2009-08-19  View
6605  CVE-2008-6874  Multiple SQL injection vulnerabilities in ASP SiteWare autoDealer 1 and 2 allow remote attackers to execute arbitrary SQL commands via the iType parameter in (1) Auto1/type.asp or (2) auto2/type.asp.    7.5  High  2017-01-03  2009-07-24  View

Page 1321 of 17672, showing 5 records out of 88360 total, starting on record 6601, ending on 6605

Actions