NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 48927 | CVE-2009-1658 | Multiple SQL injection vulnerabilities in admin/admin.php in Realty Webware Technologies Realty Web-Base 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) user (username) and (2) password parameters. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-07 | 2009-05-18 | View | |
| 48928 | CVE-2009-1659 | Unrestricted file upload vulnerability in admin/uploadimage.php in eLitius 1.0 allows remote attackers to bypass intended access restrictions and upload and execute arbitrary files via an avatar file with an accepted Content-Type such as image/gif, then requesting the file in admin/banners/. | 2 | 6.8 | Medium | 2017-01-07 | 2009-05-18 | View | |
| 48929 | CVE-2009-1660 | Stack-based buffer overflow in URUWorks ViPlay3 3.0 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long file entry in a .vpl file. | 2 | 9.3 | High | 2017-01-07 | 2009-05-18 | View | |
| 48931 | CVE-2009-1662 | Multiple SQL injection vulnerabilities in admin/login.php in Wright Way Services Recipe Script 5 allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) Password fields, as reachable from admin/index.php. | 2 | 7.5 | High | 2017-01-07 | 2009-05-18 | View | |
| 48932 | CVE-2009-1663 | Unrestricted file upload vulnerability in myaccount.php in Easy Scripts Answer and Question Script allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the uploads/[username] directory. | 2 | 6.8 | Medium | 2017-01-07 | 2009-05-18 | View |
Page 14595 of 17672, showing 5 records out of 88360 total, starting on record 72971, ending on 72975