NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2125 | CVE-2008-2198 | PHP remote file inclusion vulnerability in kmitaadmin/kmitat/htmlcode.php in Kmita Tellfriend 2.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the file parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
2124 | CVE-2008-2197 | SQL injection vulnerability in the blogwriter module 2.0 for Miniweb allows remote attackers to execute arbitrary SQL commands via the historymonth parameter to index.php. | 2 | 7.5 | High | 2017-01-03 | 2009-04-01 | View | |
2123 | CVE-2008-2196 | Cross-site scripting (XSS) vulnerability in admin.php in LifeType 1.2.8 allows remote attackers to inject arbitrary web script or HTML via the newBlogUserName parameter in an addBlogUser action, a different vector than CVE-2008-2178. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-01 | View | |
2122 | CVE-2008-2195 | Static code injection vulnerability in admincp.php in DeluxeBB 1.2 and earlier allows remote authenticated administrators to inject arbitrary PHP code into logs/cp.php via the URI. | 2 | 6.5 | Medium | 2017-01-03 | 2009-04-01 | View | |
2121 | CVE-2008-2194 | SQL injection vulnerability in forums.php in DeluxeBB 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the sort parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-04-01 | View |
Page 17248 of 17672, showing 5 records out of 88360 total, starting on record 86236, ending on 86240