NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1086 | CVE-2008-1125 | Multiple directory traversal vulnerabilities in Podcast Generator 1.0 BETA 2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) theme_path parameter to core/themes.php and the (2) filename parameter to download.php. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
1087 | CVE-2008-1126 | PHP remote file inclusion vulnerability in main.php in Barryvan Compo Manager 0.3 allows remote attackers to execute arbitrary PHP code via a URL in the pageURL parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
1088 | CVE-2008-1127 | Format string vulnerability in the cryactio function in Crysis 1.1.1.5879 allows remote authenticated users to execute arbitrary code via format string specifiers in the user name, which is triggered when the game character is killed. | 2 | 6 | Medium | 2017-01-03 | 2011-03-07 | View | |
1089 | CVE-2008-1128 | PHP remote file inclusion vulnerability in tourney/index.php in phpMyTourney 2 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
1090 | CVE-2008-1129 | Cross-site scripting (XSS) vulnerability in admin/users/self.php in XRMS CRM allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: some of these details are obtained from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 218 of 17672, showing 5 records out of 88360 total, starting on record 1086, ending on 1090