NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4186  CVE-2008-4358  Unspecified vulnerability in class/theme.class.php in SPAW Editor PHP Edition before 2.0.8.1 has unknown impact and attack vectors, probably related to directory traversal sequences in the theme name.    10  High  2017-01-03  2009-08-19  View
69722  CVE-2005-4084  xs_edit.php in the phpBB eXtreme Styles module 2.2.1 and earlier allows remote attackers to obtain the installation path of the application via an invalid viewbackup parameter.    Medium  2017-01-03  2008-09-05  View
4442  CVE-2008-4628  SQL injection vulnerability in del.php in myWebland miniBloggie 1.0 allows remote attackers to execute arbitrary SQL commands via the post_id parameter.    7.5  High  2017-01-03  2011-03-07  View
69978  CVE-2005-4380  Multiple SQL injection vulnerabilities in Bitweaver 1.1 and 1.1.1 beta allow remote attackers to execute arbitrary SQL commands via the (1) sort_mode parameter to (a) fisheye/list_galleries.php, (b) messages/message_box.php, and (c) users/my.php; the (2) post_id parameter to (d) blogs/view_post.php; and the (3) blog_id parameter to (e) blogs/view.php, which are not properly cleansed by the convert_sortmode function in kernel/BitDb.php.    7.5  High  2017-01-03  2011-09-08  View
4698  CVE-2008-4909  Cross-site request forgery (CSRF) vulnerability in CompactCMS 1.1 and earlier allows remote attackers to perform unauthorized actions as legitimate users via unspecified vectors.    4.3  Medium  2017-01-03  2008-11-04  View

Page 2334 of 17672, showing 5 records out of 88360 total, starting on record 11666, ending on 11670

Actions