NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
71111  CVE-2004-0684  WebSphere Edge Component Caching Proxy in WebSphere Edge Server 5.02, with the JunctionRewrite directive enabled, allows remote attackers to cause a denial of service via an HTTP GET request without any parameters.    Medium  2017-07-18  2017-07-10  View
5831  CVE-2008-6100  Multiple SQL injection vulnerabilities in Discussion Forums 2k 3.3, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) CatID parameter to (a) RSS1.php and (b) RSS2.php in misc/; and the (2) SubID parameter to (c) misc/RSS5.php.    6.8  Medium  2017-01-03  2009-08-19  View
6087  CVE-2008-6356  evCal Events Calendar stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the username and password via a direct request to (1) evcal.mdb and (2) evcal97.mdb.    Medium  2017-01-03  2011-03-07  View
6343  CVE-2008-6612  Unrestricted file upload vulnerability in admin/uploader.php in Minimal ABlog 0.4 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in img/.    6.8  Medium  2017-01-03  2009-04-06  View
6599  CVE-2008-6868  Cross-site scripting (XSS) vulnerability in default/login.php in EditeurScripts EsBaseAdmin 2.1 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: the EsContacts 1.0 issue is covered in CVE-2008-2037.    4.3  Medium  2017-01-03  2009-08-19  View

Page 15651 of 17672, showing 5 records out of 88360 total, starting on record 78251, ending on 78255

Actions