NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48723  CVE-2009-1447  Unrestricted file upload vulnerability in admin/editor/image.php in e-cart.biz Free Shopping Cart allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/.    6.8  Medium  2017-01-07  2009-04-28  View
48726  CVE-2009-1450  PHP remote file inclusion vulnerability in format.php in SMA-DB 0.3.12 allows remote attackers to execute arbitrary PHP code via a URL in the _page_content parameter.    7.5  High  2017-01-07  2009-04-28  View
48727  CVE-2009-1451  Cross-site scripting (XSS) vulnerability in startpage.php in SMA-DB 0.3.12 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.    4.3  Medium  2017-01-07  2009-04-28  View
6488  CVE-2008-6757  Cross-site scripting (XSS) vulnerability in manuals_search.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to inject arbitrary web script or HTML via the manuals_search parameter.    4.3  Medium  2017-01-03  2009-04-28  View
48728  CVE-2009-1452  Multiple PHP remote file inclusion vulnerabilities in theme/format.php in SMA-DB 0.3.13 allow remote attackers to execute arbitrary PHP code via a URL in the (1) _page_css and (2) _page_javascript parameters. NOTE: the _page_content vector is already is covered by CVE-2009-1450.    7.5  High  2017-01-07  2009-04-28  View

Page 14651 of 17672, showing 5 records out of 88360 total, starting on record 73251, ending on 73255

Actions