NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4030 | CVE-2008-4174 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dynamic MP3 Lister 2.0.1 allow remote attackers to inject arbitrary web script or HTML via the (1) currentpath, (2) invert, (3) search, and (4) sort parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-23 | View | |
4029 | CVE-2008-4173 | SQL injection vulnerability in ProArcadeScript 1.3 allows remote attackers to execute arbitrary SQL commands via the random parameter to the default URI. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
4028 | CVE-2008-4172 | SQL injection vulnerability in page.php in Cars & Vehicle (aka Cars-Vehicle Script) allows remote attackers to execute arbitrary SQL commands via the lnkid parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-23 | View | |
4027 | CVE-2008-4171 | SQL injection vulnerability in xmlout.php in Invision Power Board (IP.Board or IPB) 2.2.x and 2.3.x allows remote attackers to execute arbitrary SQL commands via the name parameter. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
4026 | CVE-2008-4170 | create_account.php in osCommerce 2.2 RC 2a allows remote attackers to obtain sensitive information via an invalid dob parameter, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 16867 of 17672, showing 5 records out of 88360 total, starting on record 84331, ending on 84335