NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
335  CVE-2008-0357  Directory traversal vulnerability in pages/upload.php in Galaxyscripts Mini File Host 1.2.1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the language parameter.    4.3  Medium  2017-01-03  2008-09-05  View
591  CVE-2008-0616  SQL injection vulnerability in the administration panel in the DMSGuestbook 1.7.0 plugin for WordPress allows remote authenticated administrators to execute arbitrary SQL commands via unspecified vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.    6.5  Medium  2017-01-03  2008-09-05  View
66639  CVE-2005-0889  Cross-site scripting (XSS) vulnerability in index.php for Dream4 Koobi CMS 4.2.3 allows remote attackers to inject arbitrary web script or HTML via the area parameter.    4.3  Medium  2017-01-03  2008-09-05  View
67151  CVE-2005-1412  SQL injection vulnerability in verify.asp for Ecomm Professional Guestbook 3.x allows remote attackers to execute arbitrary SQL commands via the AdminPWD parameter.    7.5  High  2017-01-03  2008-09-05  View
67919  CVE-2005-2217  Dansie Shopping Cart stores the vars.dat file under the web root with insufficient access control, which might allow remote attackers to obtain sensitive information such as program variables.    Medium  2017-01-03  2008-09-05  View

Page 498 of 17672, showing 5 records out of 88360 total, starting on record 2486, ending on 2490

Actions