NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5857 | CVE-2008-6126 | Multiple directory traversal vulnerabilities in moziloCMS 1.10.2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) file parameter to download.php and the (2) page parameter to index.php, a different vector than CVE-2008-3589. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View | |
6113 | CVE-2008-6382 | ASP Portal 3.2.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to ASPPortal.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-03-03 | View | |
6369 | CVE-2008-6638 | Insecure method vulnerability in the Versalsoft HTTP Image Uploader ActiveX control (UUploaderSvrD.dll 6.0.0.35) allows remote attackers to delete arbitrary files via the RemoveFileOrDir method. | 2 | 8.8 | High | 2017-01-03 | 2009-09-01 | View | |
6625 | CVE-2008-6894 | Multiple cross-site scripting (XSS) vulnerabilities in login.php in 3CX Phone System Free Edition 6.1793 and 6.0.806.0 allow remote attackers to inject arbitrary web script or HTML via the (1) fName and (2) fPassword parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2013-07-20 | View | |
6881 | CVE-2008-7150 | Cross-site scripting (XSS) vulnerability in Refine by Taxonomy 5.x before 5.x-0.1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via a taxonomy term, which is not properly handled by refine_by_taxo when displaying tags. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-03 | View |
Page 15899 of 17672, showing 5 records out of 88360 total, starting on record 79491, ending on 79495