NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5450  CVE-2008-5708  redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newusername and newpassword parameters and setting the newisadmin parameter to 1.    7.5  High  2017-01-03  2009-01-29  View
2891  CVE-2008-2997  Cross-site scripting (XSS) vulnerability in index.php in Gravity Board X (GBX) 2.0 Beta allows remote attackers to inject arbitrary web script or HTML via the subject parameter in a postnewsubmit (aka create new thread) action.    4.3  Medium  2017-01-03  2009-01-29  View
4427  CVE-2008-4613  SQL injection vulnerability in forums.asp in PortalApp 4.0 allows remote attackers to execute arbitrary SQL commands via the sortby parameter.    7.5  High  2017-01-03  2009-01-29  View
4428  CVE-2008-4614  PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to create and delete forums, topics, and replies.    7.5  High  2017-01-03  2009-01-29  View
2125  CVE-2008-2198  PHP remote file inclusion vulnerability in kmitaadmin/kmitat/htmlcode.php in Kmita Tellfriend 2.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the file parameter.    6.8  Medium  2017-01-03  2009-01-29  View

Page 2622 of 17672, showing 5 records out of 88360 total, starting on record 13106, ending on 13110

Actions