NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2948  CVE-2008-3058  Multiple SQL injection vulnerabilities in Octeth Oempro 3.5.5.1, and possibly other versions before 4, allow remote attackers to execute arbitrary SQL commands via the FormValue_Email parameter (aka Email field) to index.php in (1) member/, (2) client/, or (3) admin/; or (4) the FormValue_SearchKeywords parameter to client/campaign_track.php.    7.5  High  2017-01-03  2009-02-05  View
2949  CVE-2008-3059  member/settings_account.php in Octeth Oempro 3.5.5.1, and possibly other versions before 4, uses cleartext to transmit a password entered in the FormValue_Password field, which makes it easier for remote attackers to obtain sensitive information by sniffing the network, related to the "Settings - Account Information" tab.    Medium  2017-01-03  2009-02-05  View
47752  CVE-2009-0420  SQL injection vulnerability in the RD-Autos (com_rdautos) 1.5.5 Stable component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.    7.5  High  2017-01-07  2009-02-05  View
47753  CVE-2009-0421  SQL injection vulnerability in the Eventing (com_eventing) 1.6.x component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.    7.5  High  2017-01-07  2009-02-05  View
47755  CVE-2009-0423  Directory traversal vulnerability in index.php in Php Photo Album (PHPPA) 0.8 BETA allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the preview parameter.    7.5  High  2017-01-07  2009-02-05  View

Page 14944 of 17672, showing 5 records out of 88360 total, starting on record 74716, ending on 74720

Actions