NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5628 | CVE-2008-5897 | CodeAvalanche FreeWallpaper stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAFreeWallpaper.mdb. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-03 | 2009-01-13 | View | |
5884 | CVE-2008-6153 | SQL injection vulnerability in Photo.asp in Jay Patel Pixel8 Web Photo Album 3.0 allows remote attackers to execute arbitrary SQL commands via the AlbumID parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-17 | View | |
6140 | CVE-2008-6409 | SQL injection vulnerability in index.php in ol"bookmarks manager 0.7.5 allows remote attackers to execute arbitrary SQL commands via the id parameter in a brain action. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
6396 | CVE-2008-6665 | change.php in Ananta CMS 1.0b5, with magic_quotes_gpc disabled, allows remote attackers to gain administrator privileges via a crafted email parameter, possibly related to code injection. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-22 | View | |
6652 | CVE-2008-6921 | Unrestricted file upload vulnerability in index.php in phpAdBoard 1.8 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in photoes/. | 2 | 7.5 | High | 2017-01-03 | 2009-08-10 | View |
Page 17441 of 17672, showing 5 records out of 88360 total, starting on record 87201, ending on 87205