NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2009  CVE-2008-2074  Multiple PHP remote file inclusion vulnerabilities Harris Yusuf Arifin Harris Wap Chat 1.0, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the sysFileDir parameter to (1) eng.writeMsg.php, (2) eng.adCreate.php, (3) eng.adCreateSave.php, (4) eng.adDispByTypeOptions.php, (5) eng.createRoom.php, (6) eng.forward.php, (7) eng.pageLogout.php, (8) eng.resultMember.php, (9) eng.roomDeleteConfirm.php, (10) eng.saveNewRoom.php, and (11) eng.searchMember.php in src/.    7.5  High  2017-01-03  2008-09-05  View
2265  CVE-2008-2346  AlkalinePHP 0.77.35 and earlier allows remote attackers to bypass authentication and gain administrative access by creating an admin account via a direct request to adduser.php.    7.5  High  2017-01-03  2008-09-05  View
2777  CVE-2008-2883  PHP remote file inclusion vulnerability in include/plugins/jrBrowser/payment.php in Jamroom 3.3.0 through 3.3.5 allows remote attackers to execute arbitrary PHP code via a URL in the jamroom[jm_dir] parameter. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-03  2008-09-05  View
68825  CVE-2005-3163  Unspecified vulnerability in Polipo 0.9.8 and earlier allows attackers to read files outside of the web root.    Medium  2017-01-03  2008-09-05  View
3801  CVE-2008-3939  Directory traversal vulnerability in the web interface in AVTECH PageR Enterprise before 5.0.7 allows remote attackers to read arbitrary files via directory traversal sequences in the URI.    Medium  2017-01-03  2008-09-05  View

Page 1433 of 17672, showing 5 records out of 88360 total, starting on record 7161, ending on 7165

Actions