NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
33937  CVE-2014-6446  The Infusionsoft Gravity Forms plugin 1.5.3 through 1.5.10 for WordPress does not properly restrict access, which allows remote attackers to upload arbitrary files and execute arbitrary PHP code via a request to utilities/code_generator.php.    7.5  High  2017-01-19  2015-10-01  View
35985  CVE-2014-9242  SQL injection vulnerability in admin/pages/modify.php in WebsiteBaker 2.8.3 allows remote attackers to execute arbitrary SQL commands via the page_id parameter.    7.5  High  2017-01-19  2014-12-05  View
39313  CVE-2013-3527  Multiple SQL injection vulnerabilities in Vanilla Forums before 2.0.18.8 allow remote attackers to execute arbitrary SQL commands via the parameter name in the Form/Email array to (1) entry/signin or (2) entry/passwordrequest.    7.5  High  2017-01-18  2013-05-13  View
41361  CVE-2013-6243  SQL injection vulnerability in the Landing Pages plugin 1.2.3, before 20131009, and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the "post" parameter to index.php.    7.5  High  2017-01-18  2013-10-25  View
42129  CVE-2013-7422  Integer underflow in regcomp.c in Perl before 5.20, as used in Apple OS X before 10.10.5 and other products, allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via a long digit string associated with an invalid backreference within a regular expression.    7.5  High  2017-01-18  2016-12-21  View

Page 14449 of 17672, showing 5 records out of 88360 total, starting on record 72241, ending on 72245

Actions