NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1670 | CVE-2008-1730 | Directory traversal vulnerability in download.html in ARWScripts Gallery Script Lite (aka gallery-script-lite or Free Photo Gallery Site Script), as of 20080411, allows remote attackers to read arbitrary local files via directory traversal sequences in the path parameter. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
1669 | CVE-2008-1729 | The menu system in Drupal 6 before 6.2 has incorrect menu settings, which allows remote attackers to (1) edit the profile pages of arbitrary users, and obtain sensitive information from (2) tracker and (3) blog pages, related to a missing check for the "access content" permission; and (4) allows remote authenticated users, with administration page view access, to edit content types. | 2 | 5.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
1668 | CVE-2008-1728 | ConnectionManagerImpl.java in Ignite Realtime Openfire 3.4.5 allows remote authenticated users to cause a denial of service (daemon outage) by triggering large outgoing queues without reading messages. | 2 | 4 | Medium | 2017-01-03 | 2016-11-18 | View | |
1667 | CVE-2008-1727 | KnowledgeQuest 2.5 and 2.6 does not require authentication for access to admincheck.php, which allows remote attackers to create arbitrary admin accounts. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
1666 | CVE-2008-1726 | Multiple SQL injection vulnerabilities in KnowledgeQuest 2.6, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) kqid parameter to (a) articletext.php and (b) articletextonly.php and the (2) username parameter to (c) logincheck.php. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 17339 of 17672, showing 5 records out of 88360 total, starting on record 86691, ending on 86695