NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5711  CVE-2008-5980  Ocean12 Mailing List Manager Gold stores sensitive data under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for o12mail.mdb.    Medium  2017-01-03  2009-05-14  View
48720  CVE-2009-1444  PHP remote file inclusion vulnerability in indexk.php in WebPortal CMS 0.8-beta allows remote attackers to execute arbitrary PHP code via a URL in the lib_path parameter.    7.5  High  2017-01-07  2009-05-14  View
48721  CVE-2009-1445  Multiple directory traversal vulnerabilities in WebPortal CMS 0.8-beta allow remote attackers to (1) read arbitrary files via directory traversal sequences in the lang parameter to libraries/helpdocs/help.php and (2) include and execute arbitrary local files via directory traversal sequences in the error parameter to index.php.    7.5  High  2017-01-07  2009-05-14  View
48722  CVE-2009-1446  Unrestricted file upload vulnerability in upload.php in Elkagroup Image Gallery 1.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in gallery/pictures/. NOTE: some of these details are obtained from third party information.    6.5  Medium  2017-01-07  2009-05-14  View
5207  CVE-2008-5434  Multiple SQL injection vulnerabilities in PunBB 1.3 and 1.3.1 allow remote authenticated administrators to execute arbitrary SQL commands via the (1) order_by or (2) direction parameter to admin/users.php, or (3) configuration options to admin/settings.php.    6.5  Medium  2017-01-03  2009-05-14  View

Page 14610 of 17672, showing 5 records out of 88360 total, starting on record 73046, ending on 73050

Actions