NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5450 | CVE-2008-5708 | redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newusername and newpassword parameters and setting the newisadmin parameter to 1. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 2891 | CVE-2008-2997 | Cross-site scripting (XSS) vulnerability in index.php in Gravity Board X (GBX) 2.0 Beta allows remote attackers to inject arbitrary web script or HTML via the subject parameter in a postnewsubmit (aka create new thread) action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 4427 | CVE-2008-4613 | SQL injection vulnerability in forums.asp in PortalApp 4.0 allows remote attackers to execute arbitrary SQL commands via the sortby parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 4428 | CVE-2008-4614 | PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to create and delete forums, topics, and replies. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 2125 | CVE-2008-2198 | PHP remote file inclusion vulnerability in kmitaadmin/kmitat/htmlcode.php in Kmita Tellfriend 2.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the file parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 2622 of 17672, showing 5 records out of 88360 total, starting on record 13106, ending on 13110