NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
255 | CVE-2008-0270 | SQL injection vulnerability in index.php in TaskFreak! 0.6.1 and earlier allows remote authenticated users to execute arbitrary SQL commands via the sContext parameter. | 2 | 6 | Medium | 2017-01-03 | 2008-09-05 | View | |
254 | CVE-2008-0269 | Unspecified vulnerability in the dotoprocs function in Sun Solaris 10 allows local users to cause a denial of service (panic) via unspecified vectors. | 2 | 4.9 | Medium | 2017-01-03 | 2011-03-07 | View | |
253 | CVE-2008-0268 | Cross-site scripting (XSS) vulnerability in view.php in eTicket 1.5.5.2 allows remote attackers to inject arbitrary web script or HTML via the s parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2010-08-30 | View | |
252 | CVE-2008-0267 | Multiple SQL injection vulnerabilities in eTicket 1.5.5.2 allow remote authenticated users to execute arbitrary SQL commands via the (1) status, (2) sort, and (3) way parameters to search.php; and allow remote authenticated administrators to execute arbitrary SQL commands via the (4) msg and (5) password parameters to admin.php. | 2 | 7.5 | High | 2017-01-03 | 2009-09-15 | View | |
251 | CVE-2008-0266 | Cross-site request forgery (CSRF) vulnerability in admin.php in eTicket 1.5.5.2 allows remote attackers to change the administrative password and possibly perform other administrative tasks. NOTE: either the old password must be known, or the attacker must leverage a separate SQL injection vulnerability. | 2 | 2.6 | Low | 2017-01-03 | 2008-09-05 | View |
Page 17622 of 17672, showing 5 records out of 88360 total, starting on record 88106, ending on 88110