NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2461 | CVE-2008-2554 | Multiple SQL injection vulnerabilities in BP Blog 6.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to template_permalink.asp and (2) cat parameter to template_archives_cat.asp. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
2462 | CVE-2008-2555 | SQL injection vulnerability in index.php in EasyWay CMS allows remote attackers to execute arbitrary SQL commands via the mid parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-02-10 | View | |
2463 | CVE-2008-2556 | SQL injection vulnerability in read.php in PHP Visit Counter 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the datespan parameter in a read action. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
2464 | CVE-2008-2557 | Cross-site scripting (XSS) vulnerability in CRE Loaded 6.2.13.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) Links and (2) Links Submit pages. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-08 | View | |
2465 | CVE-2008-2558 | CRE Loaded 6.2.13.1 and earlier does not set the "Secure" attribute for cookies that are sent over HTTPS, which might allow remote attackers to sniff the cookies if they are sent over HTTP. | 2 | 5 | Medium | 2017-01-03 | 2008-09-10 | View |
Page 493 of 17672, showing 5 records out of 88360 total, starting on record 2461, ending on 2465