NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3292  CVE-2008-3411  The Axesstel AXW-D800 modem with D2_ETH_109_01_VEBR Jun-14-2006 software does not require authentication for (1) etc/config/System.html, (2) etc/config/Network.html, (3) etc/config/Security.html, (4) cgi-bin/sysconf.cgi, and (5) cgi-bin/route.cgi, which allows remote attackers to change the modem"s configuration via direct requests.    10  High  2017-01-03  2009-01-29  View
3548  CVE-2008-3681  components/com_user/models/reset.php in Joomla! 1.5 through 1.5.5 does not properly validate reset tokens, which allows remote attackers to reset the "first enabled user (lowest id)" password, typically for the administrator.    7.5  High  2017-01-03  2009-02-06  View
69084  CVE-2005-3423  Multiple SQL injection vulnerabilities in Subdreamer 2.2.1 allow remote attackers to execute arbitrary SQL commands via (1) the loginusername parameter or (2) cookies to (a) subdreamer.php, (b) ipb2.php, (c) phpbb2.php, (d) vbulletin2.php, and (e) vbulletin3.php.    7.5  High  2017-01-03  2008-09-05  View
3804  CVE-2008-3942  SQL injection vulnerability in landsee.php in Full PHP Emlak Script allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2008-09-10  View
4060  CVE-2008-4204  SQL injection vulnerability in city.asp in SoftAcid Hotel Reservation System (HRS) allows remote attackers to execute arbitrary SQL commands via the city parameter.    7.5  High  2017-01-03  2009-08-19  View

Page 16343 of 17672, showing 5 records out of 88360 total, starting on record 81711, ending on 81715

Actions