NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48789  CVE-2009-1516  Stack-based buffer overflow in the IceWarpServer.APIObject ActiveX control in api.dll in IceWarp Merak Mail Server 9.4.1 might allow context-dependent attackers to execute arbitrary code via a large value in the second argument to the Base64FileEncode method, as possibly demonstrated by a web application that accepts untrusted input for this method.    7.5  High  2017-01-07  2009-05-05  View
49557  CVE-2009-2309  SQL injection vulnerability in index.php in Codice CMS 2 allows remote attackers to execute arbitrary SQL commands via the tag parameter.    7.5  High  2017-01-07  2009-07-02  View
51349  CVE-2009-4203  Multiple SQL injection vulnerabilities in admin/aclass/admin_func.php in Arab Portal 2.2 allow remote attackers to execute arbitrary SQL commands via the (1) X-Forwarded-For or (2) Client-IP HTTP header in a request to the default URI under admin/.    7.5  High  2017-01-07  2009-12-07  View
52885  CVE-2007-0663  SQL injection vulnerability in index.php in Eclectic Designs CascadianFAQ 4.1 and earlier allows remote attackers to execute arbitrary SQL commands via the qid parameter, a different vector than CVE-2007-0631. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-07  2011-03-07  View
53141  CVE-2007-0926  The dologin function in guestbook.php in KvGuestbook 1.0 Beta allows remote attackers to gain administrative privileges, probably via modified $mysql["pass"] and $gbpass variables.    7.5  High  2017-01-07  2008-11-15  View

Page 14500 of 17672, showing 5 records out of 88360 total, starting on record 72496, ending on 72500

Actions