NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5476 | CVE-2008-5734 | Cross-site scripting (XSS) vulnerability in WebMail Pro in IceWarp Software Merak Mail Server 9.3.2 allows remote attackers to inject arbitrary web script or HTML via an IMG element in an HTML e-mail message. | 2 | 4.3 | Medium | 2017-01-03 | 2012-11-05 | View | |
| 5732 | CVE-2008-6001 | index.php in ADN Forum 1.0b and earlier allows remote attackers to bypass authentication and gain sysop access via a fpusuario cookie composed of an initial sysop: string, an arbitrary password field, and a final :sysop:0 string. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
| 5988 | CVE-2008-6257 | SQL injection vulnerability in default.asp in Openasp 3.0 and earlier allows remote attackers to execute arbitrary SQL commands via the idpage parameter in the pages module. | 2 | 7.5 | High | 2017-01-03 | 2009-02-24 | View | |
| 6244 | CVE-2008-6513 | Unrestricted file upload vulnerability in saa.php in Andy"s PHP Knowledgebase (aphpkb) 0.92.9 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a link that is listed by authors.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 6500 | CVE-2008-6769 | Unrestricted file upload vulnerability in upload.php in YourPlace 1.0.2 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file. | 2 | 6 | Medium | 2017-01-03 | 2009-04-29 | View |
Page 14785 of 17672, showing 5 records out of 88360 total, starting on record 73921, ending on 73925