NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1441 | CVE-2008-1494 | SQL injection vulnerability in inc/module/online.php in Easy-Clanpage 2.2 allows remote attackers to execute arbitrary SQL commands via the id parameter in a user details action, a different vector than CVE-2008-1425. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
1442 | CVE-2008-1495 | Unrestricted file upload vulnerability in administrer/produits.php in PEEL, possibly 3.x and earlier, allows remote authenticated administrators to upload and execute arbitrary PHP files via a modified content type in an ajout action, as demonstrated by (1) image/gif and (2) application/pdf. | 2 | 6.5 | Medium | 2017-01-03 | 2008-09-05 | View | |
1443 | CVE-2008-1496 | Multiple SQL injection vulnerabilities in PEEL, possibly 3.x and earlier, allow remote attackers to execute arbitrary SQL commands via the (1) email parameter to (a) membre.php, and the (2) timestamp parameter to (b) the details action in achat/historique_commandes.php and (c) the facture action in factures/facture_html.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
1444 | CVE-2008-1497 | Stack-based buffer overflow in the IMAP service in NetWin SurgeMail 38k4-4 and earlier allows remote authenticated users to execute arbitrary code via long arguments to the LSUB command. | 2 | 9 | High | 2017-01-03 | 2008-09-05 | View | |
1445 | CVE-2008-1498 | Stack-based buffer overflow in the IMAP service in NetWin Surgemail 3.8k4-4 and earlier allows remote authenticated users to execute arbitrary code via a long first argument to the LIST command. | 2 | 9 | High | 2017-01-03 | 2011-03-07 | View |
Page 289 of 17672, showing 5 records out of 88360 total, starting on record 1441, ending on 1445