NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
440  CVE-2008-0462  Cross-site scripting (XSS) vulnerability in the Archive 5.x before 5.x-1.8 module for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-03  2011-03-07  View
439  CVE-2008-0461  SQL injection vulnerability in index.php in the Search module in PHP-Nuke 8.0 FINAL and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the sid parameter in a comments action to modules.php. NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-03  2011-03-07  View
438  CVE-2008-0460  Cross-site scripting (XSS) vulnerability in api.php in (1) MediaWiki 1.11 through 1.11.0rc1, 1.10 through 1.10.2, 1.9 through 1.9.4, and 1.8; and (2) the BotQuery extension for MediaWiki 1.7 and earlier; when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-03  2011-03-07  View
437  CVE-2008-0459  Directory traversal vulnerability in update/index.php in Liquid-Silver CMS 0.35, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the update parameter.    6.8  Medium  2017-01-03  2011-03-07  View
436  CVE-2008-0458  Directory traversal vulnerability in function/sources.php in SLAED CMS 2.5 Lite allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the newlang parameter to index.php.    6.8  Medium  2017-01-03  2011-03-07  View

Page 17585 of 17672, showing 5 records out of 88360 total, starting on record 87921, ending on 87925

Actions