NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6686 | CVE-2008-6955 | mxCamArchive 2.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain configuration details and passwords via a direct request for archive/config.ini. | 2 | 7.5 | High | 2017-01-03 | 2009-08-12 | View | |
6687 | CVE-2008-6956 | Static code injection vulnerability in admin/admin.php in mxCamArchive 2.2 allows remote authenticated administrators to inject arbitrary PHP code into an unspecified program via the description parameter, which is executed by invocation of index.php. NOTE: some of these details are obtained from third party information. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-18 | View | |
6688 | CVE-2008-6957 | member.php in Crossday Discuz! Board allows remote attackers to reset passwords of arbitrary users via crafted (1) lostpasswd and (2) getpasswd actions, possibly involving predictable generation of the id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-18 | View | |
6689 | CVE-2008-6958 | wap/index.php in Crossday Discuz! Board 6.x and 7.x allows remote authenticated users to execute arbitrary PHP code via the creditsformula parameter. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-18 | View | |
6690 | CVE-2008-6959 | Insecure method vulnerability in the Chilkat Socket ActiveX control (ChilkatSocket.ChilkatSocket.1) in ChilkatSocket.dll 2.3.1.1 allows remote attackers to overwrite arbitrary files via the SaveLastError method. NOTE: this might be related to CVE-2008-1647. | 2 | 9.3 | High | 2017-01-03 | 2009-08-18 | View |
Page 1338 of 17672, showing 5 records out of 88360 total, starting on record 6686, ending on 6690