NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2146 | CVE-2008-2219 | Cross-site scripting (XSS) vulnerability in install.php in C-News.fr C-News 1.0.1 allows remote attackers to inject arbitrary web script or HTML via the etape parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
2147 | CVE-2008-2220 | Multiple PHP remote file inclusion vulnerabilities in Interact Learning Community Environment Interact 2.4.1, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) CONFIG[LANGUAGE_CPATH] parameter to modules/forum/embedforum.php and the (2) CONFIG[BASE_PATH] parameter to modules/scorm/lib.inc.php, different vectors than CVE-2006-4448. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
2148 | CVE-2008-2221 | Unspecified vulnerability in the Java plugin in IBM WebSphere Application Server 5.0.2 allows untrusted applets to gain privileges via unknown attack vectors. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
2149 | CVE-2008-2222 | SQL injection vulnerability in login.php in EQdkp 1.3.2f allows remote attackers to bypass EQdkp user authentication via the user_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
2150 | CVE-2008-2223 | SQL injection vulnerability in group_posts.php in vShare YouTube Clone 2.6 allows remote attackers to execute arbitrary SQL commands via the tid parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-04-02 | View |
Page 430 of 17672, showing 5 records out of 88360 total, starting on record 2146, ending on 2150