NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5050  CVE-2008-5272  Multiple directory traversal vulnerabilities in Fred Stuurman SyndeoCMS 2.6.0 allow remote authenticated users to read arbitrary files via a .. (dot dot) in the template parameter to (1) starnet/editors/fckeditor/studenteditor.php; (2) starnet/modules/sn_news/edit_content.php, reached through starnet/index.php; and (3) starnet/modules/sn_newsletter/edit_content.php, reached through starnet/index.php.    Medium  2017-01-03  2009-01-29  View
3259  CVE-2008-3378  SQL injection vulnerability in comment.php in Fizzmedia 1.51.2 allows remote attackers to execute arbitrary SQL commands via the mid parameter.    7.5  High  2017-01-03  2009-01-29  View
4286  CVE-2008-4463  SQL injection vulnerability in view_news.php in Vastal I-Tech Jobs Zone allows remote attackers to execute arbitrary SQL commands via the news_id parameter.    7.5  High  2017-01-03  2009-01-29  View
5310  CVE-2008-5561  SQL injection vulnerability in Netref 4.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) fiche_product.php and (2) presentation.php.    7.5  High  2017-01-03  2009-01-29  View
5311  CVE-2008-5562  ASPPortal stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for xportal.mdb.    Medium  2017-01-03  2009-01-29  View

Page 2675 of 17672, showing 5 records out of 88360 total, starting on record 13371, ending on 13375

Actions