NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5693 | CVE-2008-5962 | Directory traversal vulnerability in library/setup/rpc.php in Gravity Getting Things Done (GTD) 0.4.5 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the objectname parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-26 | View | |
| 5949 | CVE-2008-6218 | Memory leak in the png_handle_tEXt function in pngrutil.c in libpng before 1.2.33 rc02 and 1.4.0 beta36 allows context-dependent attackers to cause a denial of service (memory exhaustion) via a crafted PNG file. | 2 | 7.1 | High | 2017-01-03 | 2011-03-07 | View | |
| 6205 | CVE-2008-6474 | The management interface in F5 BIG-IP 9.4.3 allows remote authenticated users with Resource Manager privileges to inject arbitrary Perl code via unspecified configuration settings related to Perl EP3 with templates, probably triggering static code injection. | 2 | 9 | High | 2017-01-03 | 2009-03-26 | View | |
| 6461 | CVE-2008-6730 | Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPLink Pro 0.0.6 and 0.0.7, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the checkuser parameter (aka username field), or (2) the checkpass parameter (aka password field), to admin/index.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-20 | View | |
| 6717 | CVE-2008-6986 | SQL injection vulnerability in the actionMultipleAddProduct function in includes/classes/shopping_cart.php in Zen Cart 1.3.0 through 1.3.8a, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the products_id array parameter in a multiple_products_add_product action, a different vulnerability than CVE-2008-6985. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 2066 of 17672, showing 5 records out of 88360 total, starting on record 10326, ending on 10330