NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6168 | CVE-2008-6437 | Multiple cross-site scripting (XSS) vulnerabilities in PHPFreeForum 1.0 RC2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) message parameter to error.php, and the (2) nickname and (3) randomid parameters to part/menu.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 6170 | CVE-2008-6439 | Cross-site scripting (XSS) vulnerability in search_results.php in ABK-Soft AbleDating 2.4 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 5414 | CVE-2008-5672 | Multiple cross-site request forgery (CSRF) vulnerabilities in PHParanoid before 0.4 allow remote attackers to hijack the authentication of arbitrary users for requests that use (1) admin.php or (2) private messages. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 1832 | CVE-2008-1894 | Cross-site scripting (XSS) vulnerability in desktoplaunch/InfoView/logon/logon.object in BusinessObjects InfoView XI R2 SP1, SP2, and SP3 Java version before FixPack 3.5 allows remote attackers to inject arbitrary web script or HTML via the cms parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 3625 | CVE-2008-3760 | Cross-site request forgery (CSRF) vulnerability in the sign-out page in Vanilla 1.1.4 and earlier allows remote attackers to hijack the authentication of arbitrary users for requests that trigger a logout via a SignOutNow action to people.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-02 | View |
Page 2919 of 17672, showing 5 records out of 88360 total, starting on record 14591, ending on 14595