NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6362  CVE-2008-6631  Multiple cross-site scripting (XSS) vulnerabilities in index.php in BlogPHP 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) user parameter in a sendmessage action and the (2) username parameter when registering a new user, different vectors than CVE-2008-0679.    4.3  Medium  2017-01-03  2009-08-19  View
71898  CVE-2004-1519  SQL injection vulnerability in bug.php in phpBugTracker 0.9.1 allows remote attackers to execute arbitrary SQL commands via (1) the bug_id parameter in a viewvotes operation or (2) the project parameter in an add operation.    7.5  High  2017-07-18  2017-07-10  View
6618  CVE-2008-6887  SQL injection vulnerability in detailad.asp in Pre Classified Listings 1.0 allows remote attackers to execute arbitrary SQL commands via the siteid parameter.    7.5  High  2017-01-03  2009-08-03  View
72154  CVE-2004-1775  Cisco VACM (View-based Access Control MIB) for Catalyst Operating Software (CatOS) 5.5 and 6.1 and IOS 12.0 and 12.1 allows remote attackers to read and modify device configuration via the read-write community string.    Medium  2017-07-18  2017-07-10  View
6874  CVE-2008-7143  phpBB 2.0.23 includes the session ID in a request to modcp.php when the moderator or administrator closes a thread, which allows remote attackers to hijack the session via a post in the thread containing a URL to a remotely hosted image, which might include the session ID in the Referer header.    6.8  Medium  2017-01-03  2009-09-09  View

Page 15097 of 17672, showing 5 records out of 88360 total, starting on record 75481, ending on 75485

Actions