NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4586 | CVE-2008-4772 | SQL injection vulnerability in main/main.php in QuestCMS allows remote attackers to execute arbitrary SQL commands via the obj parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
4587 | CVE-2008-4773 | Directory traversal vulnerability in main/main.php in QuestCMS allows remote attackers to read arbitrary local files via a .. (dot dot) in the theme parameter. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View | |
4588 | CVE-2008-4774 | Cross-site scripting (XSS) vulnerability in main/main.php in QuestCMS allows remote attackers to inject arbitrary web script or HTML via the cx parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
4589 | CVE-2008-4775 | Cross-site scripting (XSS) vulnerability in pmd_pdf.php in phpMyAdmin 3.0.0, and possibly other versions including 2.11.9.2 and 3.0.1, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the db parameter, a different vector than CVE-2006-6942 and CVE-2007-5977. | 2 | 2.6 | Low | 2017-01-03 | 2011-03-07 | View | |
4590 | CVE-2008-4776 | libgadu before 1.8.2 allows remote servers to cause a denial of service (crash) via a contact description with a large length, which triggers a buffer over-read. | 2 | 4.3 | Medium | 2017-01-03 | 2012-10-30 | View |
Page 918 of 17672, showing 5 records out of 88360 total, starting on record 4586, ending on 4590