NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5450  CVE-2008-5708  redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newusername and newpassword parameters and setting the newisadmin parameter to 1.    7.5  High  2017-01-03  2009-01-29  View
5706  CVE-2008-5975  SQL injection vulnerability in links.asp in Active Price Comparison 4.0 allows remote attackers to execute arbitrary SQL commands via the linkid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-03  2011-03-07  View
5962  CVE-2008-6231  Pre Classified Listing PHP allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".    7.5  High  2017-01-03  2011-03-07  View
6218  CVE-2008-6487  Multiple SQL injection vulnerabilities in login.asp in Digiappz DigiAffiliate 1.4 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) admin and (2) password fields.    7.5  High  2017-01-03  2009-08-12  View
6474  CVE-2008-6743  RSMScript 1.21 allows remote attackers to bypass authentication and gain administrative privileges by setting the verified cookie to an arbitrary value and performing a direct request to (1) delete.php, (2) edit-submit.php, (3) edit.php, (4) submit.php, and (5) update.php, which bypasses the security check that is performed by verify.php.    7.5  High  2017-01-03  2009-04-23  View

Page 2769 of 17672, showing 5 records out of 88360 total, starting on record 13841, ending on 13845

Actions