NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65553 | CVE-2006-7010 | The mosgetparam implementation in Joomla! before 1.0.10, does not set a variable"s data type to integer when the variable"s default value is numeric, which has unspecified impact and attack vectors, which may permit SQL injection attacks. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
273 | CVE-2008-0288 | Multiple SQL injection vulnerabilities in ImageAlbum 2.0.0b2 allow remote attackers to execute arbitrary SQL commands via the id, which is not properly handled in (1) classes/IADomain.php, (2) classes/IACollection.php, and (3) classes/IAUser.php, as demonstrated via the id parameter in a collection.imageview action. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
785 | CVE-2008-0814 | Directory traversal vulnerability in download.php in Tracking Requirements & Use Cases (TRUC) 0.11.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the upload_filename parameter. | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-05 | View | |
66833 | CVE-2005-1084 | SQL injection vulnerability in sdating.php in aeDating 3.2 allows remote attackers to execute arbitrary SQL commands files via the event parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
67601 | CVE-2005-1883 | global.php in YaPiG 0.92b allows remote attackers to include arbitrary local files via the BASE_DIR parameter. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 131 of 17672, showing 5 records out of 88360 total, starting on record 651, ending on 655