NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5862 | CVE-2008-6131 | Session fixation vulnerability in moziloWiki 1.0.1 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter. | 2 | 6 | Medium | 2017-01-03 | 2009-08-19 | View | |
6118 | CVE-2008-6387 | Quick Tree View .NET 3.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to qtv.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View | |
6374 | CVE-2008-6643 | LokiCMS 0.3.4 and possibly earlier versions does not properly restrict access to administrative functions, which allows remote attackers to bypass intended restrictions and modify configuration settings via the LokiACTION parameter in a direct request to admin.php. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View | |
6630 | CVE-2008-6899 | Multiple buffer overflows in freeSSHd 1.2.1 allow remote authenticated users to cause a denial of service (crash) and execute arbitrary code via a long (1) open, (2) unlink, (3) mkdir, (4) rmdir, or (5) stat SFTP command. | 2 | 9 | High | 2017-01-03 | 2009-08-19 | View | |
6886 | CVE-2008-7155 | NetRisk 1.9.7 does not properly restrict access to admin/change_submit.php, which allows remote attackers to change the password of arbitrary users via a direct request. | 2 | 7.5 | High | 2017-01-03 | 2009-09-02 | View |
Page 15944 of 17672, showing 5 records out of 88360 total, starting on record 79716, ending on 79720