NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4577  CVE-2008-4763  Multiple cross-site scripting (XSS) vulnerabilities in sample.php in WiKID wClient-PHP 3.0-2 and earlier allow remote attackers to inject arbitrary web script or HTML via the PHP_SELF variable.    4.3  Medium  2017-01-03  2009-01-29  View
4833  CVE-2008-5046  SQL injection vulnerability in index.php in Mole Group Pizza Script allows remote attackers to execute arbitrary SQL commands via the manufacturers_id parameter.    7.5  High  2017-01-03  2009-01-29  View
5345  CVE-2008-5596  Ikon AdManager 2.1 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for ikonBAnner_AdManager.mdb.    Medium  2017-01-03  2009-01-29  View
5601  CVE-2008-5870  FastStone Image Viewer 3.6 allows user-assisted attackers to cause a denial of service (application crash) via a malformed BMP image with large width and height values, possibly a related issue to CVE-2007-1942.    4.3  Medium  2017-01-03  2009-01-29  View
47585  CVE-2009-0251  Static code injection vulnerability in admin.php in Ryneezy phoSheezy 0.2 allows remote authenticated administrators to inject arbitrary PHP code into config/footer via the footer parameter. NOTE: this can be exploited by unauthenticated attackers by leveraging CVE-2009-0250. NOTE: some of these details are obtained from third party information.    6.5  Medium  2017-01-07  2009-01-29  View

Page 15066 of 17672, showing 5 records out of 88360 total, starting on record 75326, ending on 75330

Actions