NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1493 | CVE-2008-1549 | Multiple SQL injection vulnerabilities in Aeries Browser Interface (ABI) 3.8.3.14 in Eagle Software Aries Student Information System allow remote attackers to execute arbitrary SQL commands via the (1) GrdBk parameter to GradebookOptions.asp and the (2) SchlCode variable to loginproc.asp, a different vector than CVE-2008-0942. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
67541 | CVE-2005-1817 | Invision Power Board (IPB) 1.0 through 1.3 allows remote attackers to edit arbitrary forum posts via a direct request to index.php with modified parameters. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2261 | CVE-2008-2342 | Directory traversal vulnerability in attachments.php in News Manager 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
3797 | CVE-2008-3935 | Cross-site scripting (XSS) vulnerability in DIC shop_v50 3.0 and earlier and shop_v52 2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
70357 | CVE-2005-4768 | SQL injection vulnerability in manage_account.php in Tux Racer TuxBank 0.7x and 0.8 allows remote attackers to execute arbitrary SQL commands via the id parameter in a manageaccount action to index.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 17386 of 17672, showing 5 records out of 88360 total, starting on record 86926, ending on 86930