NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5887 | CVE-2008-6156 | SQL injection vulnerability in editCampaign.php in AdMan 1.1.20070907 allows remote authenticated users to execute arbitrary SQL commands via the campaignId parameter. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-19 | View | |
6143 | CVE-2008-6412 | Unspecified vulnerability in Vignette Content Management 7.3.0.5, 7.3.1, 7.3.1.1, 7.4, and 7.5 allows "low privileged" users to gain administrator privileges via unknown attack vectors. | 2 | 7.5 | High | 2017-01-03 | 2009-03-06 | View | |
6399 | CVE-2008-6668 | Multiple directory traversal vulnerabilities in nweb2fax 0.2.7 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) id parameter to comm.php and (2) var_filename parameter to viewrq.php. | 2 | 5 | Medium | 2017-01-03 | 2009-04-08 | View | |
6655 | CVE-2008-6924 | Multiple cross-site scripting (XSS) vulnerabilities in register.php in eSyndiCat Directory 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) username, (2) email, (3) password, (4) password2, (5) security_code, and (6) register parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-11 | View | |
6911 | CVE-2008-7180 | del_query1.php in Telephone Directory 2008 allows remote attackers to delete arbitrary contacts via a direct request with a modified id variable. | 2 | 5 | Medium | 2017-01-03 | 2009-10-01 | View |
Page 17620 of 17672, showing 5 records out of 88360 total, starting on record 88096, ending on 88100