NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
231  CVE-2008-0246  admin.php in UploadScript 1.0 does not check for the original password before making a change to a new password, which allows remote attackers to gain administrator privileges via the pass parameter in a nopass (Set Password) action.    10  High  2017-01-03  2008-09-05  View
743  CVE-2008-0772  SQL injection vulnerability in index.php in the com_doc component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the sid parameter in a view task.    7.5  High  2017-01-03  2008-09-05  View
66279  CVE-2005-0522  Chat Anywhere 2.72a stores sensitive information such as passwords in plaintext in the .INI file for a chatroom, which allows local users to gain privileges.    4.6  Medium  2017-01-03  2008-09-05  View
999  CVE-2008-1038  PHP remote file inclusion vulnerability in mod/mod.extmanager.php in DBHcms 1.1.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the extmanager_install parameter.    6.8  Medium  2017-01-03  2008-09-05  View
1255  CVE-2008-1296  Multiple cross-site scripting (XSS) vulnerabilities in EncapsGallery 1.11.2 allow remote attackers to inject arbitrary web script or HTML via the file parameter to (1) watermark.php and (2) catalog_watermark.php in core/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-03  2008-09-05  View

Page 1516 of 17672, showing 5 records out of 88360 total, starting on record 7576, ending on 7580

Actions