NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
56285 | CVE-2007-4154 | SQL injection vulnerability in options.php in WordPress 2.2.1 allows remote authenticated administrators to execute arbitrary SQL commands via the page_options parameter to (1) options-general.php, (2) options-writing.php, (3) options-reading.php, (4) options-discussion.php, (5) options-privacy.php, (6) options-permalink.php, (7) options-misc.php, and possibly other unspecified components. | 2 | 6.5 | Medium | 2017-01-07 | 2008-09-05 | View | |
57309 | CVE-2007-5233 | SQL injection vulnerability in index.php in Web Template Management System 1.3 allows remote attackers to execute arbitrary SQL commands via the id parameter in a readmore action. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
60893 | CVE-2006-2188 | Multiple cross-site scripting (XSS) vulnerabilities in CMScout 1.10 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the Body field of a private message (PM), (2) BBCode, or (3) a forum post. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61405 | CVE-2006-2720 | SQL injection vulnerability in news.php in VARIOMAT allows remote attackers to execute arbitrary SQL commands via the subcat parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63453 | CVE-2006-4836 | SQL injection vulnerability in login.php in DCP-Portal SE 6.0 allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: The lostpassword.php and calendar.php vectors are already covered by CVE-2005-3365, and the search.php vector is already covered by CVE-2005-4227. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 1463 of 17672, showing 5 records out of 88360 total, starting on record 7311, ending on 7315