NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2917 | CVE-2008-3027 | SQL injection vulnerability in get_article.php in VanGogh Web CMS 0.9 allows remote attackers to execute arbitrary SQL commands via the article_ID parameter to index.php. | 2 | 7.5 | High | 2017-01-03 | 2009-03-18 | View | |
| 68453 | CVE-2005-2766 | Symantec AntiVirus Corporate Edition 9.0.1.x and 9.0.4.x, and possibly other versions, when obtaining updates from an internal LiveUpdate server, stores sensitive information in cleartext in the Log.Liveupdate log file, which allows attackers to obtain the username and password to the internal LiveUpdate server. | 2 | 2.1 | Low | 2017-01-03 | 2016-10-17 | View | |
| 3173 | CVE-2008-3292 | constants.inc in EZWebAlbum 1.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the photoalbumadmin cookie, as demonstrated via addpage.php. | 2 | 6.4 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 68709 | CVE-2005-3045 | SQL injection vulnerability in search.php in My Little Forum 1.5 and 1.6 beta allows remote attackers to execute arbitrary SQL commands via the phrase field. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 3429 | CVE-2008-3559 | Multiple cross-site scripting (XSS) vulnerabilities in KAPhotoservice allow remote attackers to inject arbitrary web script or HTML via the (1) filename parameter to search.asp and the (2) page parameter to order.asp. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-18 | View |
Page 14791 of 17672, showing 5 records out of 88360 total, starting on record 73951, ending on 73955