NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
543 | CVE-2008-0568 | Unspecified vulnerability in the IP-authentication feature in the Secure Site 5.x-1.0 and 4.7.x-1.0 module for Drupal allows remote attackers to gain the privileges of a user who has authenticated from behind the same proxy server as the attacker. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View | |
66079 | CVE-2005-0316 | WebWasher Classic 2.2.1 and 3.3, when running in server mode, does not properly drop CONNECT requests to the localhost from external systems, which could allow remote attackers to bypass intended access restrictions. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
66591 | CVE-2005-0841 | SQL injection vulnerability in (1) people.php, (2) track.php, (3) edit.php, (4) document.php, (5) census.php, (6) passthru.php and possibly other php files in phpMyFamily 1.4.0 allows remote attackers to execute arbitrary SQL commands, as demonstrated via (1) the person parameter to people.php or (2) the Login field. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
67103 | CVE-2005-1364 | Multiple SQL injection vulnerabilities in MetaBid Auctions allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password fields in logIn.asp, or (3) intAuctionID parameter to item.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
2079 | CVE-2008-2146 | wp-includes/vars.php in Wordpress before 2.2.3 does not properly extract the current path from the PATH_INFO ($PHP_SELF), which allows remote attackers to bypass intended access restrictions for certain pages. | 2 | 7.5 | High | 2017-01-03 | 2008-11-15 | View |
Page 1176 of 17672, showing 5 records out of 88360 total, starting on record 5876, ending on 5880