NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5050 | CVE-2008-5272 | Multiple directory traversal vulnerabilities in Fred Stuurman SyndeoCMS 2.6.0 allow remote authenticated users to read arbitrary files via a .. (dot dot) in the template parameter to (1) starnet/editors/fckeditor/studenteditor.php; (2) starnet/modules/sn_news/edit_content.php, reached through starnet/index.php; and (3) starnet/modules/sn_newsletter/edit_content.php, reached through starnet/index.php. | 2 | 4 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 3259 | CVE-2008-3378 | SQL injection vulnerability in comment.php in Fizzmedia 1.51.2 allows remote attackers to execute arbitrary SQL commands via the mid parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 4286 | CVE-2008-4463 | SQL injection vulnerability in view_news.php in Vastal I-Tech Jobs Zone allows remote attackers to execute arbitrary SQL commands via the news_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 5310 | CVE-2008-5561 | SQL injection vulnerability in Netref 4.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) fiche_product.php and (2) presentation.php. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 5311 | CVE-2008-5562 | ASPPortal stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for xportal.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 2675 of 17672, showing 5 records out of 88360 total, starting on record 13371, ending on 13375