NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5712  CVE-2008-5981  PacPoll 4.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) poll.mdb or (2) poll97.mdb.    Medium  2017-01-03  2009-01-27  View
5968  CVE-2008-6237  SQL injection vulnerability in software-description.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2009-02-24  View
6224  CVE-2008-6493  Easy Content Management Publishing stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for Database/News.mdb.    Medium  2017-01-03  2009-04-02  View
6480  CVE-2008-6749  Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPDirectory 0.0.1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) checkuser and (2) checkpass parameters.    6.8  Medium  2017-01-03  2013-08-27  View
6736  CVE-2008-7005  include/modules/top/1-random_quote.php in Minb Is Not a Blog (minb) 0.1.0 allows remote attackers to execute arbitrary PHP code via the quotes_to_edit parameter. NOTE: this issue has been reported as an unrestricted file upload by some sources, but that is a potential consequence of code execution.    7.5  High  2017-01-03  2009-08-19  View

Page 14596 of 17672, showing 5 records out of 88360 total, starting on record 72976, ending on 72980

Actions