NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5316  CVE-2008-5567  Cross-site request forgery (CSRF) vulnerability in admin/ad_settings.php in Bonza Cart 1.10 and earlier allows remote attackers to change the admin password via a logout action in conjunction with the NewAdmin, NewPass1, and NewPass2 parameters.    6.8  Medium  2017-01-03  2009-01-29  View
2757  CVE-2008-2863  Multiple absolute path traversal vulnerabilities in eLineStudio Site Composer (ESC) 2.6 allow remote attackers to create or delete arbitrary directories via a full pathname in the inpCurrFolder parameter to (1) folderdel_.asp or (2) foldernew.asp in cms/assetmanager/.    7.5  High  2017-01-03  2009-01-29  View
3269  CVE-2008-3388  Multiple SQL injection vulnerabilities in Def-Blog 1.0.3 allow remote attackers to execute arbitrary SQL commands via the article parameter to (1) comaddok.php and (2) comlook.php.    7.5  High  2017-01-03  2009-01-29  View
5317  CVE-2008-5568  Cross-site request forgery (CSRF) vulnerability in admin/settings.php in IPN Pro 3 1.44 and earlier allows remote attackers to change the admin password via a logout action in conjunction with the admin_id, newpass_1, and newpass_2 parameters.    6.8  Medium  2017-01-03  2009-01-29  View
2758  CVE-2008-2864  eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.    Medium  2017-01-03  2009-01-29  View

Page 2679 of 17672, showing 5 records out of 88360 total, starting on record 13391, ending on 13395

Actions