NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2731  CVE-2008-2837  SQL injection vulnerability in index.php in CMS-BRD allows remote attackers to execute arbitrary SQL commands via the menuclick parameter.    7.5  High  2017-01-03  2008-09-05  View
2732  CVE-2008-2838  Directory traversal vulnerability in index.php in Traindepot 0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the module parameter.    Medium  2017-01-03  2008-09-05  View
2733  CVE-2008-2839  Cross-site scripting (XSS) vulnerability in the search module in Traindepot 0.1 allows remote attackers to inject arbitrary web script or HTML via the query parameter to index.php.    4.3  Medium  2017-01-03  2008-09-05  View
2734  CVE-2008-2840  Multiple directory traversal vulnerabilities in Exero CMS 1.0.0 and 1.0.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme parameter to (1) custompage.php, (2) errors/404.php, (3) members/memberslist.php, (4) members/profile.php, (5) news/fullview.php, (6) news/index.php, (7) nopermission.php, (8) usercp/avatar.php, or (9) usercp/editpassword.php in themes/Default/. NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-03  2008-09-05  View
2735  CVE-2008-2841  Argument injection vulnerability in XChat 2.8.7b and earlier on Windows, when Internet Explorer is used, allows remote attackers to execute arbitrary commands via the --command parameter in an ircs:// URI.    6.8  Medium  2017-01-03  2009-04-14  View

Page 547 of 17672, showing 5 records out of 88360 total, starting on record 2731, ending on 2735

Actions