NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2461  CVE-2008-2554  Multiple SQL injection vulnerabilities in BP Blog 6.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to template_permalink.asp and (2) cat parameter to template_archives_cat.asp.    7.5  High  2017-01-03  2009-01-29  View
2462  CVE-2008-2555  SQL injection vulnerability in index.php in EasyWay CMS allows remote attackers to execute arbitrary SQL commands via the mid parameter.    7.5  High  2017-01-03  2009-02-10  View
2463  CVE-2008-2556  SQL injection vulnerability in read.php in PHP Visit Counter 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the datespan parameter in a read action.    7.5  High  2017-01-03  2008-09-05  View
2464  CVE-2008-2557  Cross-site scripting (XSS) vulnerability in CRE Loaded 6.2.13.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) Links and (2) Links Submit pages.    4.3  Medium  2017-01-03  2009-04-08  View
2465  CVE-2008-2558  CRE Loaded 6.2.13.1 and earlier does not set the "Secure" attribute for cookies that are sent over HTTPS, which might allow remote attackers to sniff the cookies if they are sent over HTTP.    Medium  2017-01-03  2008-09-10  View

Page 493 of 17672, showing 5 records out of 88360 total, starting on record 2461, ending on 2465

Actions