NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47452  CVE-2009-0112  Cross-site request forgery (CSRF) vulnerability in admin/agent_edit.asp in PollPro 3.0 allows remote attackers to create or modify accounts as administrators via the username, password, and name parameters.    6.8  Medium  2017-01-07  2009-01-29  View
3933  CVE-2008-4075  Directory traversal vulnerability in index.php in D-iscussion Board 3.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the topic parameter.    6.8  Medium  2017-01-03  2009-01-29  View
4701  CVE-2008-4912  SQL injection vulnerability in popup_img.php in the fotogalerie module in RS MAXSOFT allows remote attackers to execute arbitrary SQL commands via the fotoID parameter. NOTE: this issue was disclosed by an unreliable researcher, so it might be incorrect.    7.5  High  2017-01-03  2009-01-29  View
5469  CVE-2008-5727  SQL injection vulnerability in modules/auth/password_recovery.php in AIST NetCat 3.12 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the query string.    6.8  Medium  2017-01-03  2009-01-29  View
47453  CVE-2009-0113  Directory traversal vulnerability in attachmentlibrary.php in the XStandard component for Joomla! 1.5.8 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in the X_CMS_LIBRARY_PATH HTTP header.    Medium  2017-01-07  2009-01-29  View

Page 15004 of 17672, showing 5 records out of 88360 total, starting on record 75016, ending on 75020

Actions