NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 5684 | CVE-2008-5953 | Directory traversal vulnerability in KTP Computer Customer Database (KTPCCD) CMS, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the p parameter to the default URI. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 5940 | CVE-2008-6209 | SQL injection vulnerability in view_product.php in Vastal I-Tech Software Zone allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-20 | View | |
| 6196 | CVE-2008-6465 | Multiple cross-site scripting (XSS) vulnerabilities in login.php in webshell4 in Parallels H-Sphere 3.0.0 P9 and 3.1 P1 allow remote attackers to inject arbitrary web script or HTML via the (1) err, (2) errorcode, and (3) login parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View | |
| 6452 | CVE-2008-6721 | SQL injection vulnerability in index.php in AJ Square AJ Article allows remote attackers to execute arbitrary SQL commands via the txtName parameter (aka the username field). | 2 | 7.5 | High | 2017-01-03 | 2009-04-14 | View | |
| 6708 | CVE-2008-6977 | Cross-site scripting (XSS) vulnerability in album.asp in Full Revolution aspWebAlbum 3.2 allows remote attackers to inject arbitrary web script or HTML via the message parameter in a summary action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-01 | View |
Page 3135 of 17672, showing 5 records out of 88360 total, starting on record 15671, ending on 15675