NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 1774 | CVE-2008-1834 | swfdec_load_object.c in Swfdec before 0.6.4 does not properly restrict local file access from untrusted sandboxes, which allows remote attackers to read arbitrary files via a crafted Flash file. | 2 | 4.3 | Medium | 2017-01-03 | 2009-07-29 | View | |
| 1780 | CVE-2008-1840 | SQL injection vulnerability in upload.php in Coppermine Photo Gallery (CPG) 1.4.16 and earlier allows remote authenticated users or user-assisted remote HTTP servers to execute arbitrary SQL commands via the Content-Type HTTP response header provided by the HTTP server that is used for an upload. | 2 | 6.5 | Medium | 2017-01-03 | 2009-07-29 | View | |
| 1447 | CVE-2008-1500 | Cross-site scripting (XSS) vulnerability in index.php in TinyPortal 0.8.6 and 1.0.3 allows remote attackers to inject arbitrary web script or HTML via the PHPSESSID parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2009-07-30 | View | |
| 1457 | CVE-2008-1510 | Cross-site scripting (XSS) vulnerability in system/workplace/admin/accounts/users_list.jsp in Alkacon OpenCMS 7.0.3 allows remote attackers to inject arbitrary web script or HTML via the (1) searchfilter or (2) listSearchFilter parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-07-30 | View | |
| 1778 | CVE-2008-1838 | SQL injection vulnerability in BosClassifieds Classified Ads System 3.0 allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php. | 2 | 7.5 | High | 2017-01-03 | 2009-07-30 | View |
Page 3262 of 17672, showing 5 records out of 88360 total, starting on record 16306, ending on 16310