NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 3461 | CVE-2008-3591 | SQL injection vulnerability in lib/class.admin.php in Twentyone Degrees Symphony 1.7.01 and earlier allows remote attackers to execute arbitrary SQL commands via the sym_auth cookie in a /publish/filemanager/ request to index.php. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 3717 | CVE-2008-3855 | Unspecified vulnerability in the DB2 Administration Server (DAS) in the Core DAS function component in IBM DB2 9.1 before Fixpak 5 allows local users to gain privileges, aka a "FILE CREATION VULNERABILITY." NOTE: this may be the same as CVE-2007-5664. | 2 | 4.6 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 3973 | CVE-2008-4115 | TalkBack 2.3.6 allows remote attackers to obtain configuration information via a direct request to install/info.php, which calls the phpinfo function. | 2 | 5 | Medium | 2017-01-03 | 2009-08-19 | View | |
| 69509 | CVE-2005-3871 | Multiple SQL injection vulnerabilities in Joels Bulletin board (JBB) 0.9.9rc3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) nr parameter in topiczeigen.php, (2) forum and (3) zeigeseite parameters in showforum.php, (4) forum parameter in newtopic.php, and (5) tidnr parameter in neuerbeitrag.php. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 4229 | CVE-2008-4403 | The CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to cause a denial of service (NULL pointer dereference and child process crash) via crafted HTTP headers, related to the "error handling mechanism." | 2 | 5 | Medium | 2017-01-03 | 2012-10-29 | View |
Page 2727 of 17672, showing 5 records out of 88360 total, starting on record 13631, ending on 13635