NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 4996 | CVE-2008-5212 | SQL injection vulnerability in classifide_ad.php in AJ Auction 6.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the item_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-04-01 | View | |
| 2439 | CVE-2008-2531 | Cross-site scripting (XSS) vulnerability in the search script in Build A Niche Store (BANS) 3.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-01 | View | |
| 2184 | CVE-2008-2263 | SQL injection vulnerability in linking.page.php in Automated Link Exchange Portal allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. NOTE: linking.page.php is commonly renamed to link.php, links.php, etc. | 2 | 7.5 | High | 2017-01-03 | 2009-04-01 | View | |
| 2440 | CVE-2008-2532 | SQL injection vulnerability in forum/topic_detail.php in AJ Square aj-hyip (aka AJ HYIP Acme) allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-04-01 | View | |
| 4491 | CVE-2008-4677 | autoload/netrw.vim (aka the Netrw Plugin) 109, 131, and other versions before 133k for Vim 7.1.266, other 7.1 versions, and 7.2 stores credentials for an FTP session, and sends those credentials when attempting to establish subsequent FTP sessions to servers on different hosts, which allows remote FTP servers to obtain sensitive information in opportunistic circumstances by logging usernames and passwords. NOTE: the upstream vendor disputes a vector involving different ports on the same host, stating "I"m assuming that they"re using the same id and password on that unchanged hostname, deliberately." | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-01 | View |
Page 2911 of 17672, showing 5 records out of 88360 total, starting on record 14551, ending on 14555