NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2308  CVE-2008-2392  Unrestricted file upload vulnerability in WordPress 2.5.1 and earlier might allow remote authenticated administrators to upload and execute arbitrary PHP files via the Upload section in the Write Tabs area of the dashboard.    High  2017-01-03  2009-01-29  View
3076  CVE-2008-3193  SQL injection vulnerability in jSite 1.0 OE allows remote attackers to execute arbitrary SQL commands via the page parameter to the default URI.    7.5  High  2017-01-03  2009-01-29  View
5381  CVE-2008-5639  Directory traversal vulnerability in index.php in TxtBlog 1.0 Alpha allows remote attackers to read arbitrary files via a .. (dot dot) in the m parameter.    4.3  Medium  2017-01-03  2009-01-29  View
2566  CVE-2008-2668  Multiple cross-site scripting (XSS) vulnerabilities in yBlog 0.2.2.2 allow remote attackers to inject arbitrary web script or HTML via (1) the q parameter to search.php, or the n parameter to (2) user.php or (3) uss.php.    4.3  Medium  2017-01-03  2009-01-29  View
4614  CVE-2008-4800  The DebugDiag ActiveX control in CrashHangExt.dll, possibly 1.0, in Microsoft Debug Diagnostic Tool allows remote attackers to cause a denial of service (NULL pointer dereference and Internet Explorer 6.0 crash) via a large negative integer argument to the GetEntryPointForThread method. NOTE: this issue might only be exploitable in limited environments or non-default browser settings.    Medium  2017-01-03  2009-01-29  View

Page 14963 of 17672, showing 5 records out of 88360 total, starting on record 74811, ending on 74815

Actions