NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5712 | CVE-2008-5981 | PacPoll 4.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) poll.mdb or (2) poll97.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-01-27 | View | |
| 5968 | CVE-2008-6237 | SQL injection vulnerability in software-description.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-24 | View | |
| 6224 | CVE-2008-6493 | Easy Content Management Publishing stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for Database/News.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 6480 | CVE-2008-6749 | Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPDirectory 0.0.1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) checkuser and (2) checkpass parameters. | 2 | 6.8 | Medium | 2017-01-03 | 2013-08-27 | View | |
| 6736 | CVE-2008-7005 | include/modules/top/1-random_quote.php in Minb Is Not a Blog (minb) 0.1.0 allows remote attackers to execute arbitrary PHP code via the quotes_to_edit parameter. NOTE: this issue has been reported as an unrestricted file upload by some sources, but that is a potential consequence of code execution. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View |
Page 14596 of 17672, showing 5 records out of 88360 total, starting on record 72976, ending on 72980