NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4026 | CVE-2008-4170 | create_account.php in osCommerce 2.2 RC 2a allows remote attackers to obtain sensitive information via an invalid dob parameter, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
4027 | CVE-2008-4171 | SQL injection vulnerability in xmlout.php in Invision Power Board (IP.Board or IPB) 2.2.x and 2.3.x allows remote attackers to execute arbitrary SQL commands via the name parameter. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
4028 | CVE-2008-4172 | SQL injection vulnerability in page.php in Cars & Vehicle (aka Cars-Vehicle Script) allows remote attackers to execute arbitrary SQL commands via the lnkid parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-23 | View | |
4029 | CVE-2008-4173 | SQL injection vulnerability in ProArcadeScript 1.3 allows remote attackers to execute arbitrary SQL commands via the random parameter to the default URI. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
4030 | CVE-2008-4174 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dynamic MP3 Lister 2.0.1 allow remote attackers to inject arbitrary web script or HTML via the (1) currentpath, (2) invert, (3) search, and (4) sort parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-23 | View |
Page 806 of 17672, showing 5 records out of 88360 total, starting on record 4026, ending on 4030