NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65553  CVE-2006-7010  The mosgetparam implementation in Joomla! before 1.0.10, does not set a variable"s data type to integer when the variable"s default value is numeric, which has unspecified impact and attack vectors, which may permit SQL injection attacks.    7.5  High  2016-12-20  2008-09-05  View
273  CVE-2008-0288  Multiple SQL injection vulnerabilities in ImageAlbum 2.0.0b2 allow remote attackers to execute arbitrary SQL commands via the id, which is not properly handled in (1) classes/IADomain.php, (2) classes/IACollection.php, and (3) classes/IAUser.php, as demonstrated via the id parameter in a collection.imageview action.    7.5  High  2017-01-03  2008-09-05  View
785  CVE-2008-0814  Directory traversal vulnerability in download.php in Tracking Requirements & Use Cases (TRUC) 0.11.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the upload_filename parameter.    6.4  Medium  2017-01-03  2008-09-05  View
66833  CVE-2005-1084  SQL injection vulnerability in sdating.php in aeDating 3.2 allows remote attackers to execute arbitrary SQL commands files via the event parameter.    7.5  High  2017-01-03  2008-09-05  View
67601  CVE-2005-1883  global.php in YaPiG 0.92b allows remote attackers to include arbitrary local files via the BASE_DIR parameter.    Medium  2017-01-03  2008-09-05  View

Page 131 of 17672, showing 5 records out of 88360 total, starting on record 651, ending on 655

Actions