NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5247  CVE-2008-5497  BandSite CMS 1.1.4 allows remote attackers to bypass authentication and gain administrative access by setting the login_auth cookie to true.    7.5  High  2017-01-03  2009-01-29  View
5503  CVE-2008-5763  PHP remote file inclusion vulnerability in slogin_lib.inc.php in Simple Text-File Login Script (SiTeFiLo) 1.0.6 allows remote attackers to execute arbitrary PHP code via a URL in the slogin_path parameter.    7.5  High  2017-01-03  2009-02-26  View
5759  CVE-2008-6028  SQL injection vulnerability in list.php in University of Queensland Library Fez 1.3 and 2.0 RC1 allows remote attackers to execute arbitrary SQL commands via the parent_id parameter in a subject action.    7.5  High  2017-01-03  2011-03-07  View
6015  CVE-2008-6284  SQL injection vulnerability in edit.php in Z1Exchange 1.0 allows remote attackers to execute arbitrary SQL commands via the site parameter.    7.5  High  2017-01-03  2009-02-26  View
6271  CVE-2008-6540  DotNetNuke before 4.8.2, during installation or upgrade, does not warn the administrator when the default (1) ValidationKey and (2) DecryptionKey values cannot be modified in the web.config file, which allows remote attackers to bypass intended access restrictions by using the default keys.    5.1  Medium  2017-01-03  2009-08-19  View

Page 15032 of 17672, showing 5 records out of 88360 total, starting on record 75156, ending on 75160

Actions