NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 63895 | CVE-2006-5292 | PHP remote file inclusion vulnerability in photo_comment.php in Exhibit Engine 1.5 RC 4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the toroot parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 408 | CVE-2008-0430 | SQL injection vulnerability in form.php in 360 Web Manager 3.0 allows remote attackers to execute arbitrary SQL commands via the IDFM parameter. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 66968 | CVE-2005-1222 | cat_for_gen.php in Annuaire Netref 4.2 allows remote attackers to execute arbitrary PHP code by setting the ad_direct parameter to reference cat_for_gen.php, then including the code in the m_for_racine parameter, which is then written to cat_for_gen.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 2712 | CVE-2008-2818 | Directory traversal vulnerability in Easy-Clanpage 3.0 b1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the section parameter to the default URI. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 68248 | CVE-2005-2559 | doping.php in ePing plugin 1.02 and earlier for e107 portal allows remote attackers to execute arbitrary code or overwrite files via (1) shell metacharacters in the eping_count parameter or (2) restricted shell metacharacters such as ">" and "&" in the eping_host parameter, which is not handled by the validation function. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View |
Page 14530 of 17672, showing 5 records out of 88360 total, starting on record 72646, ending on 72650