NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3460 | CVE-2008-3590 | Multiple SQL injection vulnerabilities in admin/login.asp in E. Z. Poll 2 allow remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
3459 | CVE-2008-3589 | Directory traversal vulnerability in download.php in moziloCMS 1.10.1, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the cat parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-18 | View | |
3458 | CVE-2008-3588 | Multiple SQL injection vulnerabilities in phsBlog 0.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) eid parameter to comments.php, (2) cid parameter to index.php, and the (3) urltitle parameter to entries.php. | 2 | 7.5 | High | 2017-01-03 | 2009-03-18 | View | |
3457 | CVE-2008-3587 | Cross-site scripting (XSS) vulnerability in result.php in Chris Bunting Homes 4 Sale allows remote attackers to inject arbitrary web script or HTML via the r parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-18 | View | |
3456 | CVE-2008-3586 | SQL injection vulnerability in the EZ Store (com_ezstore) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php. | 2 | 7.5 | High | 2017-01-03 | 2009-03-18 | View |
Page 16981 of 17672, showing 5 records out of 88360 total, starting on record 84901, ending on 84905