NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6078  CVE-2008-6347  PHP remote file inclusion vulnerability in lib/onguma.class.php in the Onguma Time Sheet (com_ongumatimesheet20) 2.0 4b component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.    7.5  High  2017-01-03  2009-03-02  View
6079  CVE-2008-6348  Multiple SQL injection vulnerabilities in DevelopItEasy Photo Gallery 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) cat_id parameter to gallery_category.php, (2) photo_id parameter to gallery_photo.php, and the (3) user_name and (4) user_pass parameters to admin/index.php. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-03  2009-03-02  View
6083  CVE-2008-6352  SQL injection vulnerability in home.html in Xpoze Pro 4.10 allows remote attackers to execute arbitrary SQL commands via the menu parameter.    7.5  High  2017-01-03  2009-03-02  View
6084  CVE-2008-6353  SQL injection vulnerability in index.asp in ASP-CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the cha parameter.    7.5  High  2017-01-03  2009-03-02  View
6085  CVE-2008-6354  The Net Guys ASPired2poll stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the username and password via a direct request to ASPired2poll.mdb.    Medium  2017-01-03  2009-03-02  View

Page 14867 of 17672, showing 5 records out of 88360 total, starting on record 74331, ending on 74335

Actions