NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6019  CVE-2008-6288  Directory traversal vulnerability in download.php in Interface Medien ibase 2.03 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.    7.8  High  2017-01-03  2009-02-26  View
5509  CVE-2008-5769  Multiple cross-site scripting (XSS) vulnerabilities in Kerio MailServer before 6.6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) folder parameter to mailCompose.php or the (2) daytime parameter to calendarEdit.php. NOTE: some of these details are obtained from third party information.    4.3  Medium  2017-01-03  2009-02-26  View
6022  CVE-2008-6291  Acc PHP eMail 1.1 allows remote attackers to bypass authentication and gain administrative access by setting the NEWSLETTERLOGIN cookie to "admin".    7.5  High  2017-01-03  2009-02-26  View
6023  CVE-2008-6292  Acc Autos 4.0 allows remote attackers to bypass authentication and gain administrative access by setting the (1) username_cookie to "admin," (2) right_cookie to "1," and (3) id_cookie to "1."    7.5  High  2017-01-03  2009-02-26  View
6024  CVE-2008-6293  admin/Index.php in Acc Real Estate 4.0 allows remote attackers to bypass authentication and gain administrative access by setting the username_cookie to "admin."    7.5  High  2017-01-03  2009-02-26  View

Page 2795 of 17672, showing 5 records out of 88360 total, starting on record 13971, ending on 13975

Actions