NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5571 | CVE-2008-5840 | PHP iCalendar 2.24 and earlier allows remote attackers to bypass authentication by setting the phpicalendar and phpicalendar_login cookies to 1. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 57539 | CVE-2007-5474 | The driver for the Linksys WRT350N Wi-Fi access point with firmware 2.00.17 on the Atheros AR5416-AC1E chipset does not properly parse the Atheros vendor-specific information element in an association request, which allows remote authenticated users to cause a denial of service (device reboot or hang) or possibly execute arbitrary code via an Atheros information element with an invalid length, as demonstrated by an element that is too long. | 2 | 6.3 | Medium | 2017-01-07 | 2009-01-29 | View | |
| 3268 | CVE-2008-3387 | SQL injection vulnerability in show.php in PHPFootball 1.6 allows remote attackers to execute arbitrary SQL commands via the dbtable parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 4036 | CVE-2008-4180 | Unspecified vulnerability in db.php in NooMS 1.1 allows remote attackers to conduct brute force attacks against passwords via a username in the g_dbuser parameter and a password in the g_dbpwd parameter, and possibly a "localhost" g_dbhost parameter value, related to a "Mysql Remote Brute Force Vulnerability." | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 4548 | CVE-2008-4734 | Cross-site request forgery (CSRF) vulnerability in the wpcr_do_options_page function in WP Comment Remix plugin before 1.4.4 for WordPress allows remote attackers to perform unauthorized actions as administrators via a request that sets the wpcr_hidden_form_input parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View |
Page 2678 of 17672, showing 5 records out of 88360 total, starting on record 13386, ending on 13390