NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2050  CVE-2008-2116  Multiple directory traversal vulnerabilities in editor.php in ScriptsEZ.net Power Editor 2.0 allow remote attackers to read arbitrary local files via a .. (dot dot) in the (1) te and (2) dir parameters in a tempedit action.    4.4  Medium  2017-01-03  2009-01-29  View
3074  CVE-2008-3191  Multiple SQL injection vulnerabilities in usercp.php in mForum 0.1a, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) City, (2) Interest, (3) Email, (4) Icq, (5) msn, or (6) Yahoo Messenger field in an edit_profile action.    6.8  Medium  2017-01-03  2009-01-29  View
2051  CVE-2008-2117  Cross-site scripting (XSS) vulnerability in pages/news.page.inc in Project Alumni 1.0.9 allows remote attackers to inject arbitrary web script or HTML via the year parameter in a news action to index.php, a different vector than CVE-2007-6126.    4.3  Medium  2017-01-03  2009-01-29  View
2307  CVE-2008-2391  SubSonic allows remote attackers to bypass pagesize limits and cause a denial of service (CPU consumption) via a pageindex (aka data page number) of -1.    7.8  High  2017-01-03  2009-01-29  View
3075  CVE-2008-3192  Directory traversal vulnerability in index.php in jSite 1.0 OE allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module parameter.    6.8  Medium  2017-01-03  2009-01-29  View

Page 2590 of 17672, showing 5 records out of 88360 total, starting on record 12946, ending on 12950

Actions