NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2807  CVE-2008-2913  Directory traversal vulnerability in func.php in Devalcms 1.4a, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the currentpath parameter, in conjunction with certain ... (triple dot) and ..... sequences in the currentfile parameter, to index.php.    6.8  Medium  2017-01-03  2009-04-08  View
6393  CVE-2008-6662  AVG Anti-Virus for Linux 7.5.51, and possibly earlier, allows remote attackers to cause a denial of service (segmentation fault) or possibly execute arbitrary code via a malformed UPX compressed file, which triggers memory corruption.    4.3  Medium  2017-01-03  2009-04-08  View
6395  CVE-2008-6664  action.php in SH-News 3.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the shuser and shpass cookies to non-zero values.    7.5  High  2017-01-03  2009-04-08  View
2812  CVE-2008-2918  SQL injection vulnerability in details.php in Application Dynamics Cartweaver 3.0 allows remote attackers to execute arbitrary SQL commands via the prodId parameter, possibly a related issue to CVE-2006-2046.3.    7.5  High  2017-01-03  2009-04-08  View
2813  CVE-2008-2919  SQL injection vulnerability in listing.php in Gryphon gllcTS2 4.2.4 allows remote attackers to execute arbitrary SQL commands via the sort parameter.    6.8  Medium  2017-01-03  2009-04-08  View

Page 2961 of 17672, showing 5 records out of 88360 total, starting on record 14801, ending on 14805

Actions