NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5740  CVE-2008-6009  SG Real Estate Portal 2.0 allows remote attackers to bypass authentication and gain administrative access by setting the Auth cookie to 1.    7.5  High  2017-01-03  2009-08-19  View
5996  CVE-2008-6265  Directory traversal vulnerability in portfolio/css.php in Cyberfolio 7.12.2 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme parameter.    6.8  Medium  2017-01-03  2009-07-22  View
6252  CVE-2008-6521  index.php in Terracotta (aka OpenTerracotta) 0.6.1 allows remote attackers to obtain sensitive information via an invalid File parameter, which reveals the installation path in an error message.    7.8  High  2017-01-03  2009-03-25  View
6508  CVE-2008-6777  Multiple SQL injection vulnerabilities in MyPHP Forum 3.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in a confirm action, the (2) user parameter in a newconfirm action, and (3) reqpwd action to member.php; and the (4) quote parameter in a post action and (5) pid parameter in an edit action to post.php, different vectors than CVE-2005-0413.2 and CVE-2007-6667.    5.1  Medium  2017-01-03  2009-05-20  View
6764  CVE-2008-7033  SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the section parameter in a section action to index.php, a different vulnerability than CVE-2008-2568. NOTE: this issue was disclosed by an unreliable researcher, so the details might be incorrect.    7.5  High  2017-01-03  2009-08-24  View

Page 2503 of 17672, showing 5 records out of 88360 total, starting on record 12511, ending on 12515

Actions