NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 328 | CVE-2008-0350 | admin/index.php in Evilsentinel 1.0.9 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to gain administrative privileges and make arbitrary configuration changes. | 2 | 7.5 | High | 2017-01-03 | 2009-09-15 | View | |
| 584 | CVE-2008-0609 | Directory traversal vulnerability in index.php in DivideConcept VHD Web Pack 2.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 840 | CVE-2008-0869 | Cross-site scripting (XSS) vulnerability in BEA WebLogic Workshop 8.1 through SP6 and Workshop for WebLogic 9.0 through 10.0 allows remote attackers to inject arbitrary web script or HTML via a "framework defined request parameter" when using WebLogic Workshop or Apache Beehive NetUI framework with page flows. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 1096 | CVE-2008-1135 | OMEGA (aka Omegasoft) INterneSErvicesLosungen (INSEL) 7 generates different responses depending on whether or not a username is valid in a failed login attempt, which allows remote attackers to enumerate valid usernames. | 2 | 5 | Medium | 2017-01-03 | 2008-10-22 | View | |
| 1352 | CVE-2008-1395 | Plone CMS does not record users" authentication states, and implements the logout feature solely on the client side, which makes it easier for context-dependent attackers to reuse a logged-out session. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 2160 of 17672, showing 5 records out of 88360 total, starting on record 10796, ending on 10800