NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3470 | CVE-2008-3600 | Directory traversal vulnerability in contrib/phpBB2/modules.php in Gallery 1.5.7 and 1.6-alpha3, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the phpEx parameter within a modload action. | 2 | 6.8 | Medium | 2017-01-03 | 2009-03-18 | View | |
3469 | CVE-2008-3599 | SQL injection vulnerability in image.php in OpenImpro 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
3468 | CVE-2008-3598 | Multiple SQL injection vulnerabilities in psipuss 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the Cid parameter to categories.php or (2) the Username parameter to login.php. | 2 | 7.5 | High | 2017-01-03 | 2012-11-05 | View | |
3467 | CVE-2008-3597 | Skulltag before 0.97d2-RC6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) by sending a "command 29" packet when the player is not in the game. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
3466 | CVE-2008-3596 | Cross-site scripting (XSS) vulnerability in Harmoni before 1.4.7 allows remote attackers to inject arbitrary web script or HTML via the Username field, which is inserted into logs that could be rendered when viewed by an administrator. | 2 | 4.3 | Medium | 2017-01-03 | 2008-10-07 | View |
Page 16979 of 17672, showing 5 records out of 88360 total, starting on record 84891, ending on 84895