NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6481 | CVE-2008-6750 | Unrestricted file upload vulnerability in add.php in FlexPHPDirectory 0.0.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in photo/. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-24 | View | |
| 5852 | CVE-2008-6121 | CRLF injection vulnerability in SocialEngine (SE) 2.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the PHPSESSID cookie. | 2 | 7.5 | High | 2017-01-03 | 2009-04-24 | View | |
| 6404 | CVE-2008-6673 | asp/bs_login.asp in QuickerSite 1.8.5 does not properly restrict access to administrative functionality, which allows remote attackers to (1) change the admin password via the cSaveAdminPW action; (2) modify site information, such as the contact address, via the saveAdmin; and (3) modify the site design via the saveDesign action. | 2 | 7.5 | High | 2017-01-03 | 2009-04-23 | View | |
| 6405 | CVE-2008-6674 | mailPage.asp in QuickerSite 1.8.5 allows remote attackers to flood e-mail accounts with messages via a large number of requests with a modified sEmail parameter. | 2 | 5 | Medium | 2017-01-03 | 2009-04-23 | View | |
| 48647 | CVE-2009-1361 | dig.php in GScripts.net DNS Tools allows remote attackers to execute arbitrary commands via shell metacharacters in the host parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 10 | High | 2017-01-07 | 2009-04-23 | View |
Page 14663 of 17672, showing 5 records out of 88360 total, starting on record 73311, ending on 73315