NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5684  CVE-2008-5953  Directory traversal vulnerability in KTP Computer Customer Database (KTPCCD) CMS, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the p parameter to the default URI.    7.5  High  2017-01-03  2011-03-07  View
5940  CVE-2008-6209  SQL injection vulnerability in view_product.php in Vastal I-Tech Software Zone allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.    7.5  High  2017-01-03  2009-02-20  View
6196  CVE-2008-6465  Multiple cross-site scripting (XSS) vulnerabilities in login.php in webshell4 in Parallels H-Sphere 3.0.0 P9 and 3.1 P1 allow remote attackers to inject arbitrary web script or HTML via the (1) err, (2) errorcode, and (3) login parameters.    4.3  Medium  2017-01-03  2009-08-19  View
6452  CVE-2008-6721  SQL injection vulnerability in index.php in AJ Square AJ Article allows remote attackers to execute arbitrary SQL commands via the txtName parameter (aka the username field).    7.5  High  2017-01-03  2009-04-14  View
6708  CVE-2008-6977  Cross-site scripting (XSS) vulnerability in album.asp in Full Revolution aspWebAlbum 3.2 allows remote attackers to inject arbitrary web script or HTML via the message parameter in a summary action.    4.3  Medium  2017-01-03  2009-09-01  View

Page 3135 of 17672, showing 5 records out of 88360 total, starting on record 15671, ending on 15675

Actions