NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5364  CVE-2008-5621  Cross-site request forgery (CSRF) vulnerability in phpMyAdmin 2.11.x before 2.11.9.4 and 3.x before 3.1.1.0 allows remote attackers to perform unauthorized actions as the administrator via a link or IMG tag to tbl_structure.php with a modified table parameter. NOTE: other unspecified pages are also reachable, but they have the same root cause. NOTE: this can be leveraged to conduct SQL injection attacks and execute arbitrary code.    Medium  2017-01-03  2011-03-07  View
5620  CVE-2008-5889  Cross-site scripting (XSS) vulnerability in user.asp in Click&Rank allows remote attackers to inject arbitrary web script or HTML via the action parameter.    4.3  Medium  2017-01-03  2009-01-12  View
5876  CVE-2008-6145  Multiple SQL injection vulnerabilities in the WEC Discussion Forum (wec_discussion) extension 1.7.0 and earlier for TYPO3 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.    7.5  High  2017-01-03  2011-03-07  View
6132  CVE-2008-6401  SQL injection vulnerability in sayfa.php in JETIK-WEB allows remote attackers to execute arbitrary SQL commands via the kat parameter.    7.5  High  2017-01-03  2009-08-19  View
6388  CVE-2008-6657  Cross-site request forgery (CSRF) vulnerability in index.php in Simple Machines Forum (SMF) 1.0 before 1.0.15 and 1.1 before 1.1.7 allows remote attackers to hijack the authentication of admins for requests that install packages via the package parameter in an install2 action.    6.8  Medium  2017-01-03  2009-07-23  View

Page 14754 of 17672, showing 5 records out of 88360 total, starting on record 73766, ending on 73770

Actions