NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5845 | CVE-2008-6114 | SQL injection vulnerability in product_details.php in the Mytipper Zogo-shop 1.15.4 plugin for e107 allows remote attackers to execute arbitrary SQL commands via the product parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
6101 | CVE-2008-6370 | Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Contact Manager Pro 1.02 allows remote attackers to inject arbitrary web script or HTML via the DisplayFormat parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-06-19 | View | |
6357 | CVE-2008-6626 | SQL injection vulnerability in getin.php in WEBBDOMAIN Quiz 1.02 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-04-07 | View | |
6613 | CVE-2008-6882 | Live Chat (com_livechat) component 1.0 for Joomla! allows remote attackers to use the xmlhttp.php script as an open HTTP proxy to hide network scanning activities or scan internal networks via a GET request with a full URL in the query string. | 2 | 7.5 | High | 2017-01-03 | 2009-09-01 | View | |
6869 | CVE-2008-7138 | The Manager in Eye-Fi 1.1.2 generates predictable snonce values based on the time of day, which allows remote attackers to bypass authentication and upload arbitrary images by guessing the snonce. | 2 | 5 | Medium | 2017-01-03 | 2009-09-02 | View |
Page 15791 of 17672, showing 5 records out of 88360 total, starting on record 78951, ending on 78955