NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5713 | CVE-2008-5982 | Format string vulnerability in BMC PATROL Agent before 3.7.30 allows remote attackers to execute arbitrary code via format string specifiers in an invalid version number to TCP port 3181, which are not properly handled when writing a log message. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
| 5969 | CVE-2008-6238 | Cross-site scripting (XSS) vulnerability in archive/savedqueries/savequeryfinish.html in OpenEdit Digital Asset Management (DAM) before 5.2014 allows remote attackers to inject arbitrary web script or HTML via the name parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-06-23 | View | |
| 6225 | CVE-2008-6494 | ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 6481 | CVE-2008-6750 | Unrestricted file upload vulnerability in add.php in FlexPHPDirectory 0.0.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in photo/. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-24 | View | |
| 6737 | CVE-2008-7006 | Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and download a backup of the database via a direct request to admin/backupdb.php. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 14606 of 17672, showing 5 records out of 88360 total, starting on record 73026, ending on 73030