NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2396 | CVE-2008-2488 | admin/userform.php in RoomPHPlanning 1.5 does not require administrative credentials, which allows remote authenticated users to create new admin accounts. | 2 | 6.5 | Medium | 2017-01-03 | 2008-09-10 | View | |
2397 | CVE-2008-2489 | SQL injection vulnerability in the Library for Frontend Plugins (aka sg_zfelib) extension 1.1.512 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified "user input." | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
2398 | CVE-2008-2490 | Cross-site scripting (XSS) vulnerability in the KJ Image Lightbox 2 (aka kj_imagelightbox2) extension 1.4.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified "user input." | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
2399 | CVE-2008-2491 | SQL injection vulnerability in adv_cat.php in AbleSpace 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-10 | View | |
2400 | CVE-2008-2492 | Multiple SQL injection vulnerabilities in Campus Bulletin Board 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to post3/view.asp and the (2) review parameter to post3/book.asp. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 480 of 17672, showing 5 records out of 88360 total, starting on record 2396, ending on 2400