NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4476 | CVE-2008-4662 | Directory traversal vulnerability in admin.php in LokiCMS 0.3.4, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-14 | View | |
4477 | CVE-2008-4663 | Cross-site scripting (XSS) vulnerability in analysis.cgi 1.44, as used in K"s CGI Access Log Kaiseki (1) jcode.pl and (2) Jcode.pm, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2009-02-21 | View | |
4478 | CVE-2008-4664 | Heap-based buffer overflow in QvodInsert.QvodCtrl.1 ActiveX control (QvodInsert.dll) in QVOD Player before 2.1.5 build 0053 allows remote attackers to execute arbitrary code via a long URL property. NOTE: some of these details are obtained from third party information. | 2 | 9.3 | High | 2017-01-03 | 2009-07-22 | View | |
4479 | CVE-2008-4665 | SQL injection vulnerability in PG Matchmaking allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) news_read.php and (2) gifts_show.php. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
4480 | CVE-2008-4666 | SQL injection vulnerability in webboard.php in Ultimate Webboard 3.00 allows remote attackers to execute arbitrary SQL commands via the Category parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 896 of 17672, showing 5 records out of 88360 total, starting on record 4476, ending on 4480