NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5628  CVE-2008-5897  CodeAvalanche FreeWallpaper stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAFreeWallpaper.mdb. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-03  2009-01-13  View
5884  CVE-2008-6153  SQL injection vulnerability in Photo.asp in Jay Patel Pixel8 Web Photo Album 3.0 allows remote attackers to execute arbitrary SQL commands via the AlbumID parameter.    7.5  High  2017-01-03  2009-02-17  View
6140  CVE-2008-6409  SQL injection vulnerability in index.php in ol"bookmarks manager 0.7.5 allows remote attackers to execute arbitrary SQL commands via the id parameter in a brain action.    7.5  High  2017-01-03  2009-08-19  View
6396  CVE-2008-6665  change.php in Ananta CMS 1.0b5, with magic_quotes_gpc disabled, allows remote attackers to gain administrator privileges via a crafted email parameter, possibly related to code injection.    6.8  Medium  2017-01-03  2009-04-22  View
6652  CVE-2008-6921  Unrestricted file upload vulnerability in index.php in phpAdBoard 1.8 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in photoes/.    7.5  High  2017-01-03  2009-08-10  View

Page 17441 of 17672, showing 5 records out of 88360 total, starting on record 87201, ending on 87205

Actions