NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5883 | CVE-2008-6152 | SQL injection vulnerability in deptdisplay.asp in SepCity Faculty Portal allows remote attackers to execute arbitrary SQL commands via the ID parameter. NOTE: this was originally reported for Lawyer Portal, which does not have a deptdisplay.asp file. | 2 | 7.5 | High | 2017-01-03 | 2009-02-17 | View | |
6139 | CVE-2008-6408 | PHP remote file inclusion vulnerability in frame.php in ol"bookmarks manager 0.7.5 allows remote attackers to execute arbitrary PHP code via a URL in the framefile parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
6395 | CVE-2008-6664 | action.php in SH-News 3.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the shuser and shpass cookies to non-zero values. | 2 | 7.5 | High | 2017-01-03 | 2009-04-08 | View | |
6651 | CVE-2008-6920 | Unrestricted file upload vulnerability in auth.php in phpEmployment 1.8 allows remote attackers to execute arbitrary code by uploading a file with an executable extension during a regnew action, then accessing it via a direct request to the file in photoes/. | 2 | 7.5 | High | 2017-01-03 | 2009-08-10 | View | |
6907 | CVE-2008-7176 | Multiple directory traversal vulnerabilities in Facil CMS 0.1RC allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) change_lang parameter to index.php or (2) modload parameter to modules.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-10-02 | View |
Page 16135 of 17672, showing 5 records out of 88360 total, starting on record 80671, ending on 80675