NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
16031  CVE-2010-4793  SQL injection vulnerability in detail.asp in Site2Nite Auto e-Manager allows remote attackers to execute arbitrary SQL commands via the ID parameter.    7.5  High  2017-01-18  2011-09-21  View
82335  CVE-2016-5726  Packages.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the themechanges array parameter.    7.5  High  2017-02-28  2017-02-23  View
82591  CVE-2017-5959  CSRF token bypass in GeniXCMS before 1.0.2 could result in escalation of privileges. The forgotpassword.php page can be used to acquire a token.    7.5  High  2017-02-28  2017-02-23  View
83871  CVE-2014-3582  In Ambari 1.2.0 through 2.2.2, it may be possible to execute arbitrary system commands on the Ambari Server host while generating SSL certificates for hosts in an Ambari cluster.    7.5  High  2017-06-04  2017-05-30  View
21663  CVE-2016-7127  The imagegammacorrect function in ext/gd/gd.c in PHP before 5.6.25 and 7.x before 7.0.10 does not properly validate gamma values, which allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact by providing different signs for the second and third arguments.    7.5  High  2017-01-19  2016-11-28  View

Page 14609 of 17672, showing 5 records out of 88360 total, starting on record 73041, ending on 73045

Actions