NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6691 | CVE-2008-6960 | download.php in X10media x10 Automatic Mp3 Search Engine Script 1.5.5 through 1.6 allows remote attackers to read arbitrary files via an encoded url parameter, as demonstrated by obtaining database credentials from includes/constants.php. | 2 | 5 | Medium | 2017-01-03 | 2009-08-18 | View | |
6692 | CVE-2008-6961 | mailnews in Mozilla Thunderbird before 2.0.0.18 and SeaMonkey before 1.1.13, when JavaScript is enabled in mail, allows remote attackers to obtain sensitive information about the recipient, or comments in forwarded mail, via script that reads the (1) .documentURI or (2) .textContent DOM properties. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-13 | View | |
6693 | CVE-2008-6962 | Avira AntiVir Premium, Premium Security Suite, AntiVir Professional, and AntiVir Personal - FREE allows local users to execute arbitrary code via a crafted IOCTL request that overwrites a kernel pointer. | 2 | 7.2 | High | 2017-01-03 | 2009-08-13 | View | |
6694 | CVE-2008-6963 | admin.php in TurnkeyForms Text Link Sales allows remote attackers to bypass authentication and gain administrative privileges via a direct request. | 2 | 7.5 | High | 2017-01-03 | 2009-08-13 | View | |
6695 | CVE-2008-6964 | SQL injection vulnerability in the login page in X7 Chat 2.0.5 allows remote attackers to execute arbitrary SQL commands via the password field. | 2 | 7.5 | High | 2017-01-03 | 2009-08-13 | View |
Page 1339 of 17672, showing 5 records out of 88360 total, starting on record 6691, ending on 6695