NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4451  CVE-2008-4637  Cross-site scripting (XSS) vulnerability in cpCommerce before 1.2.4 allows remote attackers to inject arbitrary web script or HTML via unknown vectors in the advanced search feature. NOTE: this is probably a variant of CVE-2008-4121.    4.3  Medium  2017-01-03  2009-07-22  View
5996  CVE-2008-6265  Directory traversal vulnerability in portfolio/css.php in Cyberfolio 7.12.2 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme parameter.    6.8  Medium  2017-01-03  2009-07-22  View
4463  CVE-2008-4649  Session fixation vulnerability in Elxis CMS 2008.1 revision 2204 allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.    7.5  High  2017-01-03  2009-07-22  View
4478  CVE-2008-4664  Heap-based buffer overflow in QvodInsert.QvodCtrl.1 ActiveX control (QvodInsert.dll) in QVOD Player before 2.1.5 build 0053 allows remote attackers to execute arbitrary code via a long URL property. NOTE: some of these details are obtained from third party information.    9.3  High  2017-01-03  2009-07-22  View
6016  CVE-2008-6285  SQL injection vulnerability in index.php in PHP TV Portal 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the mid parameter.    7.5  High  2017-01-03  2009-07-22  View

Page 14435 of 17672, showing 5 records out of 88360 total, starting on record 72171, ending on 72175

Actions