NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5991 | CVE-2008-6260 | SQL injection vulnerability in index.php in Ultrastats 0.2.144 and 0.3.11 allows remote attackers to execute arbitrary SQL commands via the serverid parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-12 | View | |
| 6247 | CVE-2008-6516 | Multiple directory traversal vulnerabilities in phpKF-Portal 1.10 allow remote attackers to include arbitrary files via a .. (dot dot) in the (1) tema_dizin parameter to baslik.php and (2) portal_ayarlarportal_dili parameter to anket_yonetim.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-03 | 2009-10-05 | View | |
| 6503 | CVE-2008-6772 | login/register_form.php in YourPlace 1.0.2 and earlier does not check that a username already exists when a new account is created, which allows remote attackers to bypass intended access restrictions by registering a new account with the username of a target user. | 2 | 7.5 | High | 2017-01-03 | 2009-04-30 | View | |
| 6759 | CVE-2008-7028 | RPG.Board 0.8 Beta2 and earlier allows remote attackers to bypass authentication and gain privileges by setting the keep4u cookie to a certain value. | 2 | 7.5 | High | 2017-01-03 | 2009-08-27 | View | |
| 7015 | CVE-2008-7288 | IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0007 on AIX allows remote attackers to cause a denial of service (server destabilization) via an anonymous DIGEST-MD5 LDAP Bind operation. | 2 | 5 | Medium | 2017-01-03 | 2011-04-21 | View |
Page 2458 of 17672, showing 5 records out of 88360 total, starting on record 12286, ending on 12290