NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2018  CVE-2008-2083  SQL injection vulnerability in directory.php in Prozilla Hosting Index, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.    6.8  Medium  2017-01-03  2009-01-29  View
3810  CVE-2008-3948  SQL injection vulnerability in admin/users/self-2.php in XRMS allows remote attackers to execute arbitrary SQL commands and modify name and email fields via unspecified vectors.    7.5  High  2017-01-03  2009-01-29  View
4322  CVE-2008-4499  Multiple directory traversal vulnerabilities in PHP Web Explorer 0.99b and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) refer parameter to main.php and the (2) file parameter to edit.php.    9.3  High  2017-01-03  2009-01-29  View
5346  CVE-2008-5597  Cold BBS stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for db/cforum.mdb.    Medium  2017-01-03  2009-01-29  View
5347  CVE-2008-5598  Directory traversal vulnerability in index.php in PHPmyGallery 1.51 gold allows remote attackers to list arbitrary directories via a .. (dot dot) in the group parameter.    Medium  2017-01-03  2009-01-29  View

Page 15067 of 17672, showing 5 records out of 88360 total, starting on record 75331, ending on 75335

Actions