NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
170 | CVE-2008-0185 | SQL injection vulnerability in index.php in NetRisk 1.9.7 and possibly earlier versions allows remote attackers to execute arbitrary SQL commands via the pid parameter in a profile page (possibly profile.php). | 2 | 7.5 | High | 2017-01-03 | 2009-09-11 | View | |
169 | CVE-2008-0184 | Absolute path traversal vulnerability in index.php in Sys-Hotel on Line System allows remote attackers to read arbitrary files via an encoded "/" ("%2F") in the file parameter. | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-05 | View | |
168 | CVE-2008-0182 | Cross-site request forgery (CSRF) vulnerability in the Admin portlet in Liferay Portal before 4.4.0 allows remote authenticated users to perform unspecified actions as unspecified other authenticated users via the Shutdown message. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
167 | CVE-2008-0181 | Cross-site scripting (XSS) vulnerability in the Admin portlet in Liferay Portal 4.3.6 allows remote authenticated users to inject arbitrary web script or HTML via the Shutdown message. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
166 | CVE-2008-0180 | Cross-site scripting (XSS) vulnerability in themes/_unstyled/templates/init.vm in Liferay Portal 4.3.6 allows remote authenticated users to inject arbitrary web script or HTML via the Greeting field in a User Profile. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 17639 of 17672, showing 5 records out of 88360 total, starting on record 88191, ending on 88195