NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
16052  CVE-2010-4814  SQL injection vulnerability in index1.php in Best Soft Inc. (BSI) Advance Hotel Booking System 1.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.    7.5  High  2017-01-18  2011-07-11  View
84916  CVE-2017-7628  The Smart related articles extension 1.1 for Joomla! has SQL injection in dialog.php (attacker must use search_cats variable in POST method to exploit this vulnerability).    7.5  High  2017-04-27  2017-04-20  View
87988  CVE-2017-4052  Authentication Bypass vulnerability in the web interface in McAfee Advanced Threat Defense (ATD) 3.10, 3.8, 3.6, 3.4 allows remote unauthenticated users / remote attackers to change or update any configuration settings, or gain administrator functionality via a crafted HTTP request parameter.    7.5  High  2017-07-18  2017-07-17  View
27572  CVE-2015-6728  The ApiBase::getWatchlistUser function in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 does not perform token comparison in constant time, which allows remote attackers to guess the watchlist token and bypass CSRF protection via a timing attack.    7.5  High  2017-01-19  2016-12-07  View
28852  CVE-2015-8803  The ecc_256_modp function in ecc-256.c in Nettle before 3.2 does not properly handle carry propagation and produces incorrect output in its implementation of the P-256 NIST elliptic curve, which allows attackers to have unspecified impact via unknown vectors, a different vulnerability than CVE-2015-8805.    7.5  High  2017-01-19  2016-12-05  View

Page 14836 of 17672, showing 5 records out of 88360 total, starting on record 74176, ending on 74180

Actions