NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6408  CVE-2008-6677  Unrestricted file upload vulnerability in fckeditor251/editor/filemanager/connectors/asp/upload.asp in QuickerSite 1.8.5 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file.    7.5  High  2017-01-03  2009-04-23  View
48652  CVE-2009-1367  Cross-site scripting (XSS) vulnerability in index.php in moziloCMS 1.11 allows remote attackers to inject arbitrary web script or HTML via the query parameter in search action, a different issue than CVE-2008-6127.2a.    4.3  Medium  2017-01-07  2009-04-23  View
48653  CVE-2009-1368  Directory traversal vulnerability in index.php in moziloCMS 1.11 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter. NOTE: this might be the same issue as CVE-2008-6126.2, which may have been fixed in 1.10.3.    7.5  High  2017-01-07  2009-04-23  View
48654  CVE-2009-1369  moziloCMS 1.11 allows remote attackers to obtain sensitive information via the (1) gal[] parameter to gallery.php, (2) page[] and (3) cat[] parameter to index.php, or (4) file[] parameter to download.php, which reveals the installation path in an error message.    Medium  2017-01-07  2009-04-23  View
48655  CVE-2009-1370  Stack-based buffer overflow in ape_plugin.plg in Xilisoft Video Converter 3.1.53.0704n and 5.1.23.0402 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .cue file.    9.3  High  2017-01-07  2009-04-23  View

Page 14664 of 17672, showing 5 records out of 88360 total, starting on record 73316, ending on 73320

Actions