NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
821  CVE-2008-0850  Multiple SQL injection vulnerabilities in Dokeos 1.8.4 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to whoisonline.php, (2) tracking_list_coaches_column parameter to main/mySpace/index.php, (3) tutor_name parameter to main/create_course/add_course.php, the (4) Referer HTTP header to index.php, and the (5) X-Fowarded-For HTTP header to main/admin/class_list.php.    7.5  High  2017-01-03  2011-03-07  View
822  CVE-2008-0851  Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.4 allow remote attackers to inject arbitrary web script or HTML via the (1) username parameter to inscription.php, (2) courseCode parameter to main/calendar/myagenda.php, (3) category parameter to main/admin/course_category.php, (4) message parameter to main/admin/session_list.php in a show_message action, and (5) an avatar image to main/auth/profile.php.    4.3  Medium  2017-01-03  2011-03-07  View
823  CVE-2008-0852  freeSSHd 1.2 and earlier allows remote attackers to cause a denial of service (crash) via a SSH2_MSG_NEWKEYS packet to TCP port 22, which triggers a NULL pointer dereference.    Medium  2017-01-03  2011-03-07  View
824  CVE-2008-0853  SQL injection vulnerability in the com_detail component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. NOTE: this issue might be site-specific. If so, it should not be included in CVE.    7.5  High  2017-01-03  2008-09-05  View
825  CVE-2008-0854  SQL injection vulnerability in the com_salesrep component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the rid parameter in a showrep action to index.php.    7.5  High  2017-01-03  2008-09-05  View

Page 165 of 17672, showing 5 records out of 88360 total, starting on record 821, ending on 825

Actions