NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
724 | CVE-2008-0753 | SQL injection vulnerability in calendar.php in Virtual War (VWar) 1.5 allows remote attackers to execute arbitrary SQL commands via the month parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
1492 | CVE-2008-1548 | Multiple cross-site scripting (XSS) vulnerabilities in Aeries Browser Interface (ABI) 3.8.3.14 in Eagle Software Aries Student Information System allow remote attackers to inject arbitrary web script or HTML via the (1) UserName parameter to loginproc.asp and the (2) usr parameter to Login.asp. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
67540 | CVE-2005-1816 | Invision Power Board (IPB) 1.0 through 2.0.4 allows non-root admins to add themselves or other users to the root admin group via the "Move users in this group to" screen. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
2260 | CVE-2008-2341 | PHP remote file inclusion vulnerability in ch_readalso.php in News Manager 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the read_xml_include parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
70356 | CVE-2005-4767 | BEA WebLogic Server and WebLogic Express 8.1 SP5 and earlier, and 7.0 SP6 and earlier, when using username/password authentication, does not lock out a username after the maximum number of invalid login attempts, which makes it easier for remote attackers to guess the password. | 2 | 5.1 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 17381 of 17672, showing 5 records out of 88360 total, starting on record 86901, ending on 86905