NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6686  CVE-2008-6955  mxCamArchive 2.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain configuration details and passwords via a direct request for archive/config.ini.    7.5  High  2017-01-03  2009-08-12  View
6687  CVE-2008-6956  Static code injection vulnerability in admin/admin.php in mxCamArchive 2.2 allows remote authenticated administrators to inject arbitrary PHP code into an unspecified program via the description parameter, which is executed by invocation of index.php. NOTE: some of these details are obtained from third party information.    6.5  Medium  2017-01-03  2009-08-18  View
6688  CVE-2008-6957  member.php in Crossday Discuz! Board allows remote attackers to reset passwords of arbitrary users via crafted (1) lostpasswd and (2) getpasswd actions, possibly involving predictable generation of the id parameter.    7.5  High  2017-01-03  2009-08-18  View
6689  CVE-2008-6958  wap/index.php in Crossday Discuz! Board 6.x and 7.x allows remote authenticated users to execute arbitrary PHP code via the creditsformula parameter.    6.5  Medium  2017-01-03  2009-08-18  View
6690  CVE-2008-6959  Insecure method vulnerability in the Chilkat Socket ActiveX control (ChilkatSocket.ChilkatSocket.1) in ChilkatSocket.dll 2.3.1.1 allows remote attackers to overwrite arbitrary files via the SaveLastError method. NOTE: this might be related to CVE-2008-1647.    9.3  High  2017-01-03  2009-08-18  View

Page 1338 of 17672, showing 5 records out of 88360 total, starting on record 6686, ending on 6690

Actions