NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
1666  CVE-2008-1726  Multiple SQL injection vulnerabilities in KnowledgeQuest 2.6, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) kqid parameter to (a) articletext.php and (b) articletextonly.php and the (2) username parameter to (c) logincheck.php.    6.8  Medium  2017-01-03  2008-09-05  View
1667  CVE-2008-1727  KnowledgeQuest 2.5 and 2.6 does not require authentication for access to admincheck.php, which allows remote attackers to create arbitrary admin accounts.    7.5  High  2017-01-03  2008-09-05  View
1668  CVE-2008-1728  ConnectionManagerImpl.java in Ignite Realtime Openfire 3.4.5 allows remote authenticated users to cause a denial of service (daemon outage) by triggering large outgoing queues without reading messages.    Medium  2017-01-03  2016-11-18  View
1669  CVE-2008-1729  The menu system in Drupal 6 before 6.2 has incorrect menu settings, which allows remote attackers to (1) edit the profile pages of arbitrary users, and obtain sensitive information from (2) tracker and (3) blog pages, related to a missing check for the "access content" permission; and (4) allows remote authenticated users, with administration page view access, to edit content types.    5.8  Medium  2017-01-03  2011-03-07  View
1670  CVE-2008-1730  Directory traversal vulnerability in download.html in ARWScripts Gallery Script Lite (aka gallery-script-lite or Free Photo Gallery Site Script), as of 20080411, allows remote attackers to read arbitrary local files via directory traversal sequences in the path parameter.    Medium  2017-01-03  2008-09-05  View

Page 334 of 17672, showing 5 records out of 88360 total, starting on record 1666, ending on 1670

Actions