NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
1666 | CVE-2008-1726 | Multiple SQL injection vulnerabilities in KnowledgeQuest 2.6, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) kqid parameter to (a) articletext.php and (b) articletextonly.php and the (2) username parameter to (c) logincheck.php. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
1667 | CVE-2008-1727 | KnowledgeQuest 2.5 and 2.6 does not require authentication for access to admincheck.php, which allows remote attackers to create arbitrary admin accounts. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
1668 | CVE-2008-1728 | ConnectionManagerImpl.java in Ignite Realtime Openfire 3.4.5 allows remote authenticated users to cause a denial of service (daemon outage) by triggering large outgoing queues without reading messages. | 2 | 4 | Medium | 2017-01-03 | 2016-11-18 | View | |
1669 | CVE-2008-1729 | The menu system in Drupal 6 before 6.2 has incorrect menu settings, which allows remote attackers to (1) edit the profile pages of arbitrary users, and obtain sensitive information from (2) tracker and (3) blog pages, related to a missing check for the "access content" permission; and (4) allows remote authenticated users, with administration page view access, to edit content types. | 2 | 5.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
1670 | CVE-2008-1730 | Directory traversal vulnerability in download.html in ARWScripts Gallery Script Lite (aka gallery-script-lite or Free Photo Gallery Site Script), as of 20080411, allows remote attackers to read arbitrary local files via directory traversal sequences in the path parameter. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 334 of 17672, showing 5 records out of 88360 total, starting on record 1666, ending on 1670