NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5997 | CVE-2008-6266 | SQL injection vulnerability in links.php in Appalachian State University phpWebSite allows remote attackers to execute arbitrary SQL commands via the cid parameter in a viewlink action. | 2 | 7.5 | High | 2017-01-03 | 2009-02-25 | View | |
| 6253 | CVE-2008-6522 | Multiple directory traversal vulnerabilities in the RenderFile function in ContentRender.class.php in Terracotta (aka OpenTerracotta) 0.6.1, and possibly other versions, allow remote attackers to list arbitrary directories and read arbitrary files via a .. (dot dot) in the (1) CurrentDirectory and (2) File parameters to index.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-06-17 | View | |
| 6509 | CVE-2008-6778 | SQL injection vulnerability in viewfaqs.php in Scripts for Sites (SFS) EZ Auction allows remote attackers to execute arbitrary SQL commands via the cat parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-05-20 | View | |
| 6765 | CVE-2008-7034 | PHP remote file inclusion vulnerability in kernel/smarty/Smarty.class.php in PHPEcho CMS 2.0 rc3 allows remote attackers to execute arbitrary PHP code via a URL in unspecified vectors that modify the _smarty_compile_path variable in the fetch function. | 2 | 7.5 | High | 2017-01-03 | 2009-08-25 | View | |
| 7021 | CVE-2008-7295 | Microsoft Internet Explorer cannot properly restrict modifications to cookies established in HTTPS sessions, which allows man-in-the-middle attackers to overwrite or delete arbitrary cookies via a Set-Cookie header in an HTTP response, related to lack of the HTTP Strict Transport Security (HSTS) includeSubDomains feature, aka a "cookie forcing" issue. | 2 | 5.8 | Medium | 2017-01-03 | 2012-08-02 | View |
Page 2512 of 17672, showing 5 records out of 88360 total, starting on record 12556, ending on 12560