NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
491  CVE-2008-0516  PHP remote file inclusion vulnerability in spaw/dialogs/confirm.php in SQLiteManager 1.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the spaw_root parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    9.3  High  2017-01-03  2008-09-05  View
747  CVE-2008-0776  SQL injection vulnerability in detail.php in iTechBids Gold 6.0 allows remote attackers to execute arbitrary SQL commands via the item_id parameter.    7.5  High  2017-01-03  2008-09-05  View
66283  CVE-2005-0526  Multiple cross-site scripting (XSS) vulnerabilities in PBLang 4.65 allow remote attackers to inject arbitrary web script or HTML via (1) the search string to search.php, (2) the subject of a PM, which is processed by pm.php, or (3) the body of a PM, which is processed by pmpshow.php.    4.3  Medium  2017-01-03  2016-10-17  View
1003  CVE-2008-1042  Directory traversal vulnerability in include/body.inc.php in Linux Web Shop (LWS) php Download Manager 1.0 and 1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the content parameter.    6.8  Medium  2017-01-03  2008-09-05  View
1259  CVE-2008-1300  Cross-site scripting (XSS) vulnerability in the Logfile Viewer Settings function in system/workplace/admin/workplace/logfileview/logfileViewSettings.jsp in Alkacon OpenCms 7.0.3 and 7.0.4 allows remote attackers to inject arbitrary web script or HTML via the filePath.0 parameter in a save action, a different vector than CVE-2008-1045.    4.3  Medium  2017-01-03  2010-11-11  View

Page 15983 of 17672, showing 5 records out of 88360 total, starting on record 79911, ending on 79915

Actions