NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15885 | CVE-2010-4638 | SQL injection vulnerability in the submitSurvey function in controller.php in JQuarks4s (com_jquarks4s) component 1.0.0 for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the q parameter in a submitSurvey action to index.php. | 2 | 6.8 | Medium | 2017-01-18 | 2010-12-31 | View | |
| 15884 | CVE-2010-4637 | Cross-site scripting (XSS) vulnerability in feedlist/handler_image.php in the FeedList plugin 2.61.01 for WordPress allows remote attackers to inject arbitrary web script or HTML via the i parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2010-12-31 | View | |
| 15883 | CVE-2010-4636 | SQL injection vulnerability in detail.asp in Site2Nite Business e-Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter. | 2 | 7.5 | High | 2017-01-18 | 2010-12-31 | View | |
| 15882 | CVE-2010-4635 | SQL injection vulnerability in detail.asp in Site2Nite Vacation Rental (VRBO) Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter. | 2 | 7.5 | High | 2017-01-18 | 2010-12-31 | View | |
| 15881 | CVE-2010-4634 | ** DISPUTED ** Directory traversal vulnerability in osTicket 1.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to module.php, a different vector than CVE-2005-1439. NOTE: this issue has been disputed by a reliable third party. | 2 | 5 | Medium | 2017-01-18 | 2010-12-31 | View |
Page 14496 of 17672, showing 5 records out of 88360 total, starting on record 72476, ending on 72480