NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2197  CVE-2008-2276  Cross-site request forgery (CSRF) vulnerability in manage_user_create.php in Mantis 1.1.1 allows remote attackers to create new administrative users via a crafted link.    6.8  Medium  2017-01-03  2009-04-08  View
2713  CVE-2008-2819  SQL injection vulnerability in BlognPlus (BURO GUN +) 2.5.4 and earlier MySQL and PostgreSQL editions allows remote attackers to execute arbitrary SQL commands via unspecified vectors.    7.5  High  2017-01-03  2009-04-08  View
1439  CVE-2008-1492  Multiple directory traversal vulnerabilities in CoronaMatrix phpAddressBook 2.11 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the skin parameter to (1) index.php and (2) install.php. NOTE: it was later reported that vector 1 is also present in 2.0.    7.5  High  2017-01-03  2009-04-08  View
48543  CVE-2009-1256  SQL injection vulnerability in FlexCMS 2.5 allows remote attackers to execute arbitrary SQL commands via the ItemId parameter. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-07  2009-04-08  View
2464  CVE-2008-2557  Cross-site scripting (XSS) vulnerability in CRE Loaded 6.2.13.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) Links and (2) Links Submit pages.    4.3  Medium  2017-01-03  2009-04-08  View

Page 2955 of 17672, showing 5 records out of 88360 total, starting on record 14771, ending on 14775

Actions