NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5498 | CVE-2008-5758 | Cross-site request forgery (CSRF) vulnerability in PHParanoid before 0.5 allows remote attackers to perform unspecified actions as authenticated users via unknown vectors related to private messages. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-10 | View | |
| 5754 | CVE-2008-6023 | PHP remote file inclusion vulnerability in includes/todofleetcontrol.php in a newer version of Xnova, possibly 0.8 sp1, allows remote attackers to execute arbitrary PHP code via a URL in the xnova_root_path parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-03-13 | View | |
| 6010 | CVE-2008-6279 | RakhiSoftware Price Comparison Script (aka Shopping Cart) allows remote attackers to obtain sensitive information via an invalid PHPSESSID cookie, which reveals the installation path in an error message. | 2 | 7.8 | High | 2017-01-03 | 2009-02-26 | View | |
| 6266 | CVE-2008-6535 | admin/settings.php in PayPal eStores allows remote attackers to bypass intended access restrictions and change the administrative password via a direct request with a modified NewAdmin parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-03-27 | View | |
| 6522 | CVE-2008-6791 | PumpKIN TFTP Server 2.7.2.0 allows remote attackers to cause a denial of service via a write request with a long mode field. | 2 | 5 | Medium | 2017-01-03 | 2009-05-05 | View |
Page 2632 of 17672, showing 5 records out of 88360 total, starting on record 13156, ending on 13160