NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4996  CVE-2008-5212  SQL injection vulnerability in classifide_ad.php in AJ Auction 6.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the item_id parameter.    7.5  High  2017-01-03  2009-04-01  View
2439  CVE-2008-2531  Cross-site scripting (XSS) vulnerability in the search script in Build A Niche Store (BANS) 3.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter.    4.3  Medium  2017-01-03  2009-04-01  View
2184  CVE-2008-2263  SQL injection vulnerability in linking.page.php in Automated Link Exchange Portal allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. NOTE: linking.page.php is commonly renamed to link.php, links.php, etc.    7.5  High  2017-01-03  2009-04-01  View
2440  CVE-2008-2532  SQL injection vulnerability in forum/topic_detail.php in AJ Square aj-hyip (aka AJ HYIP Acme) allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2009-04-01  View
4491  CVE-2008-4677  autoload/netrw.vim (aka the Netrw Plugin) 109, 131, and other versions before 133k for Vim 7.1.266, other 7.1 versions, and 7.2 stores credentials for an FTP session, and sends those credentials when attempting to establish subsequent FTP sessions to servers on different hosts, which allows remote FTP servers to obtain sensitive information in opportunistic circumstances by logging usernames and passwords. NOTE: the upstream vendor disputes a vector involving different ports on the same host, stating "I"m assuming that they"re using the same id and password on that unchanged hostname, deliberately."    4.3  Medium  2017-01-03  2009-04-01  View

Page 2911 of 17672, showing 5 records out of 88360 total, starting on record 14551, ending on 14555

Actions