NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5998 | CVE-2008-6267 | Cross-site scripting (XSS) vulnerability in detail.php in Multi Languages WebShop Online 1.02 allows remote attackers to inject arbitrary web script or HTML via the name parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-13 | View | |
| 6002 | CVE-2008-6271 | Directory traversal vulnerability in index.php in TBmnetCMS 1.0, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the content parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-03-13 | View | |
| 4218 | CVE-2008-4392 | dnscache in Daniel J. Bernstein djbdns 1.05 does not prevent simultaneous identical outbound DNS queries, which makes it easier for remote attackers to spoof DNS responses, as demonstrated by a spoofed A record in the Additional section of a response to a Start of Authority (SOA) query. | 2 | 6.4 | Medium | 2017-01-03 | 2009-03-13 | View | |
| 5754 | CVE-2008-6023 | PHP remote file inclusion vulnerability in includes/todofleetcontrol.php in a newer version of Xnova, possibly 0.8 sp1, allows remote attackers to execute arbitrary PHP code via a URL in the xnova_root_path parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-03-13 | View | |
| 6020 | CVE-2008-6289 | SQL injection vulnerability in cityview.php in Tours Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the cityid parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-03-13 | View |
Page 2848 of 17672, showing 5 records out of 88360 total, starting on record 14236, ending on 14240