NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2756 | CVE-2008-2862 | Multiple SQL injection vulnerabilities in eLineStudio Site Composer (ESC) 2.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to ansFAQ.asp and the (2) template_id parameter to preview.asp. | 2 | 7.5 | High | 2017-01-03 | 2009-04-14 | View | |
2757 | CVE-2008-2863 | Multiple absolute path traversal vulnerabilities in eLineStudio Site Composer (ESC) 2.6 allow remote attackers to create or delete arbitrary directories via a full pathname in the inpCurrFolder parameter to (1) folderdel_.asp or (2) foldernew.asp in cms/assetmanager/. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
2758 | CVE-2008-2864 | eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
2759 | CVE-2008-2865 | SQL injection vulnerability in index.php in Kalptaru Infotech PHP Site Lock 2.0 allows remote attackers to execute arbitrary SQL commands via the articleid parameter in a show_article action. | 2 | 7.5 | High | 2017-01-03 | 2009-04-14 | View | |
2760 | CVE-2008-2866 | SQL injection vulnerability in csc_article_details.php in Caupo.net CaupoShop Classic 1.3 allows remote attackers to execute arbitrary SQL commands via the saArticle[ID] parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 552 of 17672, showing 5 records out of 88360 total, starting on record 2756, ending on 2760