NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
138  CVE-2008-0148  TUTOS 1.3 does not restrict access to php/admin/cmd.php, which allows remote attackers to execute arbitrary shell commands via the cmd parameter in a direct request.    10  High  2017-01-03  2008-09-05  View
65674  CVE-2006-7131  PHP remote file inclusion vulnerability in extras/mt.php in Jinzora 2.6 allows remote attackers to execute arbitrary PHP code via the web_root parameter.    10  High  2016-12-20  2008-09-05  View
906  CVE-2008-0936  SQL injection vulnerability in index.php in the Prayer List (prayerlist) 1.04 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the cid parameter in a view action.    7.5  High  2017-01-03  2008-09-05  View
1674  CVE-2008-1734  Interpretation conflict in PHP Toolkit before 1.0.1 on Gentoo Linux might allow local users to cause a denial of service (PHP outage) and read contents of PHP scripts by creating a file with a one-letter lowercase alphabetic name, which triggers interpretation of a certain unquoted [a-z] argument as a matching shell glob for this name, rather than interpretation as the literal [a-z] regular-expression string, and consequently blocks the launch of the PHP interpreter within the Apache HTTP Server.    3.6  Low  2017-01-03  2008-09-05  View
67210  CVE-2005-1472  Certain system calls in Apple Mac OS X 10.4.1 do not properly enforce the permissions of certain directories without the POSIX read bit set, but with the execute bits set for group or other, which allows local users to list files in otherwise restricted directories.    2.1  Low  2017-01-03  2008-09-05  View

Page 921 of 17672, showing 5 records out of 88360 total, starting on record 4601, ending on 4605

Actions