NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2807 | CVE-2008-2913 | Directory traversal vulnerability in func.php in Devalcms 1.4a, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the currentpath parameter, in conjunction with certain ... (triple dot) and ..... sequences in the currentfile parameter, to index.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-08 | View | |
| 6393 | CVE-2008-6662 | AVG Anti-Virus for Linux 7.5.51, and possibly earlier, allows remote attackers to cause a denial of service (segmentation fault) or possibly execute arbitrary code via a malformed UPX compressed file, which triggers memory corruption. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-08 | View | |
| 6395 | CVE-2008-6664 | action.php in SH-News 3.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the shuser and shpass cookies to non-zero values. | 2 | 7.5 | High | 2017-01-03 | 2009-04-08 | View | |
| 2812 | CVE-2008-2918 | SQL injection vulnerability in details.php in Application Dynamics Cartweaver 3.0 allows remote attackers to execute arbitrary SQL commands via the prodId parameter, possibly a related issue to CVE-2006-2046.3. | 2 | 7.5 | High | 2017-01-03 | 2009-04-08 | View | |
| 2813 | CVE-2008-2919 | SQL injection vulnerability in listing.php in Gryphon gllcTS2 4.2.4 allows remote attackers to execute arbitrary SQL commands via the sort parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-08 | View |
Page 2961 of 17672, showing 5 records out of 88360 total, starting on record 14801, ending on 14805