NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2661 | CVE-2008-2767 | SQL injection vulnerability in search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to execute arbitrary SQL commands via the orderby parameter. | 2 | 6.5 | Medium | 2017-01-03 | 2009-04-14 | View | |
2662 | CVE-2008-2768 | Cross-site scripting (XSS) vulnerability in admin/search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to inject arbitrary web script or HTML via unspecified vectors ("all fields"). | 2 | 3.5 | Low | 2017-01-03 | 2009-08-11 | View | |
2663 | CVE-2008-2769 | PHP remote file inclusion vulnerability in authentication/smf/smf.functions.php in Simple Machines phpRaider 1.0.6 and 1.0.7 allows remote attackers to execute arbitrary PHP code via a URL in the pConfig_auth[smf_path] parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
2664 | CVE-2008-2770 | SQL injection vulnerability in index.php in MycroCMS 0.5, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the entry_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
2665 | CVE-2008-2771 | The Node Hierarchy module 5.x before 5.x-1.1 and 6.x before 6.x-1.0 for Drupal does not properly implement access checks, which allows remote attackers with "access content" permissions to bypass restrictions and modify the node hierarchy via unspecified attack vectors. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 533 of 17672, showing 5 records out of 88360 total, starting on record 2661, ending on 2665