NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5450 | CVE-2008-5708 | redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newusername and newpassword parameters and setting the newisadmin parameter to 1. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 5706 | CVE-2008-5975 | SQL injection vulnerability in links.asp in Active Price Comparison 4.0 allows remote attackers to execute arbitrary SQL commands via the linkid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 5962 | CVE-2008-6231 | Pre Classified Listing PHP allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin". | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 6218 | CVE-2008-6487 | Multiple SQL injection vulnerabilities in login.asp in Digiappz DigiAffiliate 1.4 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) admin and (2) password fields. | 2 | 7.5 | High | 2017-01-03 | 2009-08-12 | View | |
| 6474 | CVE-2008-6743 | RSMScript 1.21 allows remote attackers to bypass authentication and gain administrative privileges by setting the verified cookie to an arbitrary value and performing a direct request to (1) delete.php, (2) edit-submit.php, (3) edit.php, (4) submit.php, and (5) update.php, which bypasses the security check that is performed by verify.php. | 2 | 7.5 | High | 2017-01-03 | 2009-04-23 | View |
Page 2769 of 17672, showing 5 records out of 88360 total, starting on record 13841, ending on 13845