NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5247 | CVE-2008-5497 | BandSite CMS 1.1.4 allows remote attackers to bypass authentication and gain administrative access by setting the login_auth cookie to true. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 5503 | CVE-2008-5763 | PHP remote file inclusion vulnerability in slogin_lib.inc.php in Simple Text-File Login Script (SiTeFiLo) 1.0.6 allows remote attackers to execute arbitrary PHP code via a URL in the slogin_path parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-26 | View | |
| 5759 | CVE-2008-6028 | SQL injection vulnerability in list.php in University of Queensland Library Fez 1.3 and 2.0 RC1 allows remote attackers to execute arbitrary SQL commands via the parent_id parameter in a subject action. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 6015 | CVE-2008-6284 | SQL injection vulnerability in edit.php in Z1Exchange 1.0 allows remote attackers to execute arbitrary SQL commands via the site parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-26 | View | |
| 6271 | CVE-2008-6540 | DotNetNuke before 4.8.2, during installation or upgrade, does not warn the administrator when the default (1) ValidationKey and (2) DecryptionKey values cannot be modified in the web.config file, which allows remote attackers to bypass intended access restrictions by using the default keys. | 2 | 5.1 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 15032 of 17672, showing 5 records out of 88360 total, starting on record 75156, ending on 75160