NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4551  CVE-2008-4737  Cross-site scripting (XSS) vulnerability in wholite.cgi in WhoDomLite 1.1.3 allows remote attackers to inject arbitrary web script or HTML via the dom parameter.    4.3  Medium  2017-01-03  2008-10-24  View
4552  CVE-2008-4738  SQL injection vulnerability in gallery.php in MyCard 1.0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2009-01-29  View
4553  CVE-2008-4739  Directory traversal vulnerability in index.php in PlugSpace 0.1, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the navi parameter.    6.8  Medium  2017-01-03  2009-01-29  View
4554  CVE-2008-4740  Directory traversal vulnerability in templater.php in the ZZ_Templater module in TinyCMS 1.1.2, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the config[template] parameter.    5.1  Medium  2017-01-03  2009-08-20  View
4555  CVE-2008-4741  Directory traversal vulnerability in index.php in FAR-PHP 1.00, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the c parameter.    Medium  2017-01-03  2009-09-01  View

Page 911 of 17672, showing 5 records out of 88360 total, starting on record 4551, ending on 4555

Actions