NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3270  CVE-2008-3389  Stack-based buffer overflow in the libbecompat library in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and HP-UX allows local users to gain privileges by setting a long value of an environment variable before running (1) verifydb, (2) iimerge, or (3) csreport.    4.6  Medium  2017-01-03  2011-03-07  View
3269  CVE-2008-3388  Multiple SQL injection vulnerabilities in Def-Blog 1.0.3 allow remote attackers to execute arbitrary SQL commands via the article parameter to (1) comaddok.php and (2) comlook.php.    7.5  High  2017-01-03  2009-01-29  View
3268  CVE-2008-3387  SQL injection vulnerability in show.php in PHPFootball 1.6 allows remote attackers to execute arbitrary SQL commands via the dbtable parameter.    7.5  High  2017-01-03  2009-01-29  View
3267  CVE-2008-3386  SQL injection vulnerability in album.php in AlstraSoft Video Share Enterprise 4.51 allows remote attackers to execute arbitrary SQL commands via the UID parameter, a different vector than CVE-2007-4086.    7.5  High  2017-01-03  2009-08-19  View
3266  CVE-2008-3385  Directory traversal vulnerability in include/head_chat.inc.php in php Help Agent 1.0 and 1.1 Full allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the content parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.    6.8  Medium  2017-01-03  2009-08-19  View

Page 17019 of 17672, showing 5 records out of 88360 total, starting on record 85091, ending on 85095

Actions