NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5333 | CVE-2008-5584 | Multiple cross-site scripting (XSS) vulnerabilities in ProjectPier 0.8 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) a message, (2) a milestone, or (3) a display name in a profile, or the (4) a or (5) c parameter to index.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 3286 | CVE-2008-3405 | Directory traversal vulnerability in index.php in Ricardo Amaral nzFotolog 0.4.1 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the action_file parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 4566 | CVE-2008-4752 | TlNews 2.2 allows remote attackers to bypass authentication and gain administrative access by setting the tlNews_login cookie to admin. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 5334 | CVE-2008-5585 | Multiple PHP remote file inclusion vulnerabilities in lcxBBportal 0.1 Alpha 2 allow remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter to (1) portal/includes/portal_block.php and (2) includes/acp/acp_lcxbbportal.php. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 5590 | CVE-2008-5859 | SQL injection vulnerability in index.php in Constructr CMS 3.02.5 and earlier, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the show_page parameter. | 2 | 5.1 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 2687 of 17672, showing 5 records out of 88360 total, starting on record 13431, ending on 13435