NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5296 | CVE-2008-5547 | HAURI ViRobot 2008.12.4.1499 and possibly 2008.9.12.1375, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit. | 2 | 9.3 | High | 2017-01-03 | 2009-01-29 | View | |
| 5552 | CVE-2008-5812 | Multiple unspecified vulnerabilities in SPIP 1.8 before 1.8.3b, 1.9 before 1.9.2g, and 2.0 before 2.0.2 have unknown impact and attack vectors. | 2 | 10 | High | 2017-01-03 | 2009-01-05 | View | |
| 5808 | CVE-2008-6077 | SQL injection vulnerability in loudblog/ajax.php in LoudBlog 0.8.0a and earlier allows remote authenticated users to execute arbitrary SQL commands via the colpick parameter in a singleread action. | 2 | 6.5 | Medium | 2017-01-03 | 2009-04-30 | View | |
| 6064 | CVE-2008-6333 | SQL injection vulnerability in news.php in RSS Simple News (RSSSN), when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the pid parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-03-02 | View | |
| 6320 | CVE-2008-6589 | Multiple cross-site scripting (XSS) vulnerabilities in LightNEasy "no database" (aka flat) version 1.2.2, and possibly SQLite version 1.2.2, allow remote attackers to inject arbitrary web script or HTML via the page parameter to (1) index.php and (2) LightNEasy.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 3112 of 17672, showing 5 records out of 88360 total, starting on record 15556, ending on 15560