NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6085 | CVE-2008-6354 | The Net Guys ASPired2poll stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the username and password via a direct request to ASPired2poll.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-03-02 | View | |
| 6341 | CVE-2008-6610 | Absolute path traversal vulnerability in phpcksec.php in Stefan Ott phpcksec 0.2.0 allows remote attackers to list arbitrary directories and read arbitrary files via a full pathname in the file parameter. | 2 | 6.4 | Medium | 2017-01-03 | 2009-04-06 | View | |
| 6597 | CVE-2008-6866 | SQL injection vulnerability in modules.php in the Current_Issue module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id parameter in a summary action. | 2 | 7.5 | High | 2017-01-03 | 2009-08-12 | View | |
| 6853 | CVE-2008-7122 | Multiple insecure method vulnerabilities in an ActiveX control in (epRegPro.ocx) in Evans Programming Registry Pro allow remote attackers to read and modify sensitive registry keys via the (1) About, (2) CreateKey, (3) DeleteBranch, (4) DeleteKey, (5) DeleteValue, (6) EnumKeys, (7) EnumValues, (8) QueryType, (9) QueryValue, (10) RenameKey, and (11) SetValue methods. | 2 | 10 | High | 2017-01-03 | 2009-08-31 | View | |
| 73157 | CVE-2003-0009 | Cross-site scripting (XSS) vulnerability in Help and Support Center for Microsoft Windows Me allows remote attackers to execute arbitrary script in the Local Computer security context via an hcp:// URL with the malicious script in the topic parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 3296 of 17672, showing 5 records out of 88360 total, starting on record 16476, ending on 16480