NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5713  CVE-2008-5982  Format string vulnerability in BMC PATROL Agent before 3.7.30 allows remote attackers to execute arbitrary code via format string specifiers in an invalid version number to TCP port 3181, which are not properly handled when writing a log message.    10  High  2017-01-03  2011-03-07  View
5969  CVE-2008-6238  Cross-site scripting (XSS) vulnerability in archive/savedqueries/savequeryfinish.html in OpenEdit Digital Asset Management (DAM) before 5.2014 allows remote attackers to inject arbitrary web script or HTML via the name parameter.    4.3  Medium  2017-01-03  2009-06-23  View
6225  CVE-2008-6494  ASP User Engine.NET stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for users.mdb.    Medium  2017-01-03  2009-04-02  View
6481  CVE-2008-6750  Unrestricted file upload vulnerability in add.php in FlexPHPDirectory 0.0.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in photo/.    6.8  Medium  2017-01-03  2009-04-24  View
6737  CVE-2008-7006  Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and download a backup of the database via a direct request to admin/backupdb.php.    Medium  2017-01-03  2009-08-19  View

Page 14606 of 17672, showing 5 records out of 88360 total, starting on record 73026, ending on 73030

Actions