NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
1781  CVE-2008-1841  SQL injection vulnerability in the session handling functionality in bridge/coppermine.inc.php in Coppermine Photo Gallery (CPG) 1.4.17 and earlier allows remote attackers to execute arbitrary SQL commands via an input field associated with the session_id variable, as exploited in the wild in April 2008. NOTE: the fix for CVE-2008-1840 was intended to address this vulnerability, but is actually inapplicable.    6.8  Medium  2017-01-03  2008-09-05  View
1782  CVE-2008-1842  Integer signedness error in ovspmd.exe in HP OpenView Network Node Manager (OV NNM) 8.01, and 7.53 and earlier, allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code via a long request to TCP port 8886 that begins with a certain negative integer, which passes a signed comparison and triggers a heap-based buffer overflow.    10  High  2017-01-03  2011-10-11  View
1783  CVE-2008-1843  SQL injection vulnerability in browse.php in W2B DatingClub (aka Dating Club) allows remote attackers to execute arbitrary SQL commands via the age_to parameter in a browsebyCat action.    7.5  High  2017-01-03  2013-07-13  View
1784  CVE-2008-1844  SQL injection vulnerability in cat.php in W2B phpHotResources allows remote attackers to execute arbitrary SQL commands via the kind parameter.    7.5  High  2017-01-03  2008-09-05  View
1785  CVE-2008-1845  The Korn shell (aka mksh) before R33d on MirOS (aka MirBSD) does not flush the tty"s I/O when invoking mksh in a new terminal, which allows local users to gain privileges by opening a virtual terminal and entering command sequences, which might later be executed in opportunistic circumstances by a different user who launches mksh and specifies that terminal with the -T option.    7.2  High  2017-01-03  2008-09-05  View

Page 357 of 17672, showing 5 records out of 88360 total, starting on record 1781, ending on 1785

Actions