NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6671 | CVE-2008-6940 | TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain a database backup via a direct request to admin/backup/db. | 2 | 7.5 | High | 2017-01-03 | 2009-08-12 | View | |
6672 | CVE-2008-6941 | SQL injection vulnerability in the login functionality in TurnkeyForms Web Hosting Directory allows remote attackers to execute arbitrary SQL commands via the password field. | 2 | 7.5 | High | 2017-01-03 | 2009-09-02 | View | |
6673 | CVE-2008-6942 | Unrestricted file upload vulnerability in ScriptsFeed Realtor Classifieds System (aka Real Estate Classifieds) allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a profile logo, then accessing it via a direct request to the file in re_images/. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-15 | View | |
6674 | CVE-2008-6943 | Unrestricted file upload vulnerability in ScriptsFeed Recipes Listing Portal allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a recipe photo, then accessing it via a direct request to the file in pictures/. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-12 | View | |
6675 | CVE-2008-6944 | Unrestricted file upload vulnerability in ScriptsFeed Auto Classifieds allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a profile logo, then accessing it via a direct request to the file in cars_images/. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-15 | View |
Page 1335 of 17672, showing 5 records out of 88360 total, starting on record 6671, ending on 6675