NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5498  CVE-2008-5758  Cross-site request forgery (CSRF) vulnerability in PHParanoid before 0.5 allows remote attackers to perform unspecified actions as authenticated users via unknown vectors related to private messages.    6.8  Medium  2017-01-03  2009-01-10  View
5754  CVE-2008-6023  PHP remote file inclusion vulnerability in includes/todofleetcontrol.php in a newer version of Xnova, possibly 0.8 sp1, allows remote attackers to execute arbitrary PHP code via a URL in the xnova_root_path parameter.    7.5  High  2017-01-03  2009-03-13  View
6010  CVE-2008-6279  RakhiSoftware Price Comparison Script (aka Shopping Cart) allows remote attackers to obtain sensitive information via an invalid PHPSESSID cookie, which reveals the installation path in an error message.    7.8  High  2017-01-03  2009-02-26  View
6266  CVE-2008-6535  admin/settings.php in PayPal eStores allows remote attackers to bypass intended access restrictions and change the administrative password via a direct request with a modified NewAdmin parameter.    7.5  High  2017-01-03  2009-03-27  View
6522  CVE-2008-6791  PumpKIN TFTP Server 2.7.2.0 allows remote attackers to cause a denial of service via a write request with a long mode field.    Medium  2017-01-03  2009-05-05  View

Page 2632 of 17672, showing 5 records out of 88360 total, starting on record 13156, ending on 13160

Actions