NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6636  CVE-2008-6905  Cross-site request forgery (CSRF) vulnerability in index.php in BabbleBoard 1.1.6 allows remote authenticated users to hijack the authentication of administrators for requests that delete (1) categories or (2) groups; (3) ban users; or (4) delete users via the admin page.    Medium  2017-01-03  2009-08-06  View
6637  CVE-2008-6906  Cross-site scripting (XSS) vulnerability in index.php in BabbleBoard 1.1.6 allows remote attackers to inject arbitrary web script or HTML via the username.    4.3  Medium  2017-01-03  2009-08-06  View
6638  CVE-2008-6907  Multiple SQL injection vulnerabilities in checkuser.php in 2532designs 2532|Gigs 1.2.2 Stable, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters, as accessible from a form generated by index.php.    6.8  Medium  2017-01-03  2009-08-06  View
49909  CVE-2009-2668  Microsoft Internet Explorer 6 through 6.0.2900.2180 and 7 through 7.0.6000.16473 allows remote attackers to cause a denial of service (CPU consumption) via an XML document composed of a long series of start-tags with no corresponding end-tags, a related issue to CVE-2009-1232.    7.8  High  2017-01-07  2009-08-06  View
49446  CVE-2009-2184  Absolute path traversal vulnerability in forcedownload.php in Gravy Media Photo Host 1.0.8 allows remote attackers to read arbitrary files via an encoded "/" (slash) in the file parameter.    Medium  2017-01-07  2009-08-07  View

Page 3268 of 17672, showing 5 records out of 88360 total, starting on record 16336, ending on 16340

Actions