NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 4397 | CVE-2008-4581 | The Editor in IBM ENOVIA SmarTeam 5 before release 18 SP5, and release 19 before SP01, allows remote authenticated users to bypass intended access restrictions and read Document objects via the Workflow Process (aka Flow Process) view. | 2 | 4 | Medium | 2017-01-03 | 2009-07-23 | View | |
| 5938 | CVE-2008-6207 | Unrestricted file upload vulnerability in form_upload.php in PHPG Upload 1.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 8.5 | High | 2017-01-03 | 2009-07-23 | View | |
| 5979 | CVE-2008-6248 | Cross-site scripting (XSS) vulnerability in all.php in Galatolo WebManager 1.3a and earlier allows remote attackers to inject arbitrary web script or HTML via the tag parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-07-23 | View | |
| 5989 | CVE-2008-6258 | SQL injection vulnerability in users.asp in QuadComm Q-Shop 3.0, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the (1) UserID and (2) Pwd parameters. NOTE: this might be related to CVE-2004-2108. | 2 | 7.5 | High | 2017-01-03 | 2009-07-23 | View | |
| 5993 | CVE-2008-6262 | SQL injection vulnerability in lib/url/meta_url.php in SaturnCMS allows remote attackers to execute arbitrary SQL commands via the URL to the translate function. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-03 | 2009-07-23 | View |
Page 3242 of 17672, showing 5 records out of 88360 total, starting on record 16206, ending on 16210