NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63895  CVE-2006-5292  PHP remote file inclusion vulnerability in photo_comment.php in Exhibit Engine 1.5 RC 4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the toroot parameter.    7.5  High  2016-12-20  2011-03-07  View
408  CVE-2008-0430  SQL injection vulnerability in form.php in 360 Web Manager 3.0 allows remote attackers to execute arbitrary SQL commands via the IDFM parameter.    7.5  High  2017-01-03  2011-03-07  View
66968  CVE-2005-1222  cat_for_gen.php in Annuaire Netref 4.2 allows remote attackers to execute arbitrary PHP code by setting the ad_direct parameter to reference cat_for_gen.php, then including the code in the m_for_racine parameter, which is then written to cat_for_gen.php.    7.5  High  2017-07-18  2017-07-10  View
2712  CVE-2008-2818  Directory traversal vulnerability in Easy-Clanpage 3.0 b1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the section parameter to the default URI.    7.5  High  2017-01-03  2008-09-05  View
68248  CVE-2005-2559  doping.php in ePing plugin 1.02 and earlier for e107 portal allows remote attackers to execute arbitrary code or overwrite files via (1) shell metacharacters in the eping_count parameter or (2) restricted shell metacharacters such as ">" and "&" in the eping_host parameter, which is not handled by the validation function.    7.5  High  2017-01-03  2016-10-17  View

Page 14530 of 17672, showing 5 records out of 88360 total, starting on record 72646, ending on 72650

Actions