NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5550 | CVE-2008-5810 | WBPublish (aka WBPublish.exe) in Fujitsu-Siemens WebTransactions 7.0, 7.1, and possibly other versions allows remote attackers to execute arbitrary commands via shell metacharacters in input that is sent through HTTP and improperly used during temporary session data cleanup, possibly related to (1) directory names, (2) template names, and (3) session IDs. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
| 5806 | CVE-2008-6075 | SQL injection vulnerability in aspkat.asp in Bahar Download Script 2.0 allows remote attackers to execute arbitrary SQL commands via the kid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-03 | 2009-02-06 | View | |
| 6062 | CVE-2008-6331 | Multiple cross-site request forgery (CSRF) vulnerabilities in Streber before 0.08093 allow remote attackers to hijack the authentication of unspecified victims via unknown vectors. | 2 | 6 | Medium | 2017-01-03 | 2012-01-05 | View | |
| 6318 | CVE-2008-6587 | Cross-site request forgery (CSRF) vulnerability in index.tmpl in Vuze (formerly Azureus HTML WebUI), probably 0.7.6, allows remote attackers to hijack the authentication of users for requests that force the download of arbitrary torrent files via the upurl parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-06 | View | |
| 6574 | CVE-2008-6843 | Directory traversal vulnerability in index.php in Fantastico, as used with cPanel 11.x, allows remote attackers to read arbitrary files via a .. (dot dot) in the sup3r parameter. | 2 | 5 | Medium | 2017-01-03 | 2009-07-02 | View |
Page 3094 of 17672, showing 5 records out of 88360 total, starting on record 15466, ending on 15470