NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5857  CVE-2008-6126  Multiple directory traversal vulnerabilities in moziloCMS 1.10.2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) file parameter to download.php and the (2) page parameter to index.php, a different vector than CVE-2008-3589.    Medium  2017-01-03  2009-08-19  View
6113  CVE-2008-6382  ASP Portal 3.2.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to ASPPortal.mdb.    Medium  2017-01-03  2009-03-03  View
6369  CVE-2008-6638  Insecure method vulnerability in the Versalsoft HTTP Image Uploader ActiveX control (UUploaderSvrD.dll 6.0.0.35) allows remote attackers to delete arbitrary files via the RemoveFileOrDir method.    8.8  High  2017-01-03  2009-09-01  View
6625  CVE-2008-6894  Multiple cross-site scripting (XSS) vulnerabilities in login.php in 3CX Phone System Free Edition 6.1793 and 6.0.806.0 allow remote attackers to inject arbitrary web script or HTML via the (1) fName and (2) fPassword parameters.    4.3  Medium  2017-01-03  2013-07-20  View
6881  CVE-2008-7150  Cross-site scripting (XSS) vulnerability in Refine by Taxonomy 5.x before 5.x-0.1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via a taxonomy term, which is not properly handled by refine_by_taxo when displaying tags.    4.3  Medium  2017-01-03  2009-09-03  View

Page 15899 of 17672, showing 5 records out of 88360 total, starting on record 79491, ending on 79495

Actions