NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2272 | CVE-2008-2353 | Directory traversal vulnerability in admin.php in GNU/Gallery 1.1.1.0 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the show parameter. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 2784 | CVE-2008-2890 | Multiple SQL injection vulnerabilities in Online Fantasy Football League (OFFL) 0.2.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) fflteam_id parameter to teams.php, the (2) league_id parameter to leagues.php, and the (3) player_id parameter to players.php. | 2 | 7.5 | High | 2017-01-03 | 2009-04-14 | View | |
| 68320 | CVE-2005-2631 | Cisco Clean Access (CCA) 3.3.0 to 3.3.9, 3.4.0 to 3.4.5, and 3.5.0 to 3.5.3 does not properly authenticate users when invoking API methods, which could allow remote attackers to bypass security checks, change the assigned role of a user, or disconnect users. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 3296 | CVE-2008-3415 | Directory traversal vulnerability in common.php in CMScout 2.05, when .htaccess is not supported, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the bit parameter, as demonstrated by an upload to avatar/ of a .jpg file containing PHP sequences. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 4320 | CVE-2008-4497 | SQL injection vulnerability in event_detail.php in Built2Go Real Estate Listings 1.5 allows remote attackers to execute arbitrary SQL commands via the event_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-18 | View |
Page 15361 of 17672, showing 5 records out of 88360 total, starting on record 76801, ending on 76805