NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6911  CVE-2008-7180  del_query1.php in Telephone Directory 2008 allows remote attackers to delete arbitrary contacts via a direct request with a modified id variable.    Medium  2017-01-03  2009-10-01  View
6912  CVE-2008-7181  Butterfly Organizer 2.0.0 allows remote attackers to (1) delete arbitrary categories via a modified tablehere parameter to category-delete.php with the is_js_confirmed parameter set to 1, or (2) delete arbitrary accounts via the mytable parameter to delete.php.    7.5  High  2017-01-03  2009-09-09  View
6913  CVE-2008-7182  Buffer overflow in the IMAP service in NetWin Surgemail 3.9e, and possibly other versions before 3.9g2, allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long first argument to the APPEND command, a different vector than CVE-2008-1497 and CVE-2008-1498. NOTE: due to lack of details, it is not certain whether this is the same issue as CVE-2008-2859.    Medium  2017-01-03  2009-09-08  View
6914  CVE-2008-7183  PHP remote file inclusion vulnerability in eva/index.php in EVA CMS 2.3.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the eva[caminho] parameter to index.php.    6.8  Medium  2017-01-03  2009-09-09  View
6915  CVE-2008-7184  Cross-site scripting (XSS) vulnerability in Diigo Toolbar and Diigolet allows remote attackers to inject arbitrary web script or HTML via a public comment.    4.3  Medium  2017-01-03  2009-09-09  View

Page 1383 of 17672, showing 5 records out of 88360 total, starting on record 6911, ending on 6915

Actions