NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 4285 | CVE-2008-4462 | SQL injection vulnerability in view_news.php in Vastal I-Tech Visa Zone allows remote attackers to execute arbitrary SQL commands via the news_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-07-23 | View | |
| 69821 | CVE-2005-4223 | Multiple "potential" SQL injection vulnerabilities in Utopia News Pro (UNP) 1.1.4 might allow remote attackers to execute arbitrary SQL commands via (1) the newsid parameter in editnews.php, (2) the catid and question parameters in faq.php, (3) the poster parameter in postnews.php, (4) the tempid parameter in templates.php, and (5) the userid and groupid parameters in users.php. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 70077 | CVE-2005-4479 | SQL injection vulnerability in article.php in phpSlash 0.8.1 and earlier allows remote attackers to execute arbitrary SQL commands via the story_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 5053 | CVE-2008-5275 | Multiple directory traversal vulnerabilities in the (a) "Unzip archive" and (b) "Upload files and archives" functionality in net2ftp 0.96 stable and 0.97 beta allow remote attackers to create, read, or delete arbitrary files via a .. (dot dot) in a filename within a (1) TAR or (2) ZIP archive. NOTE: this can be leveraged for code execution by creating a .php file. | 2 | 7.5 | High | 2017-01-03 | 2009-04-14 | View | |
| 70845 | CVE-2004-0397 | Stack-based buffer overflow during the apr_time_t data conversion in Subversion 1.0.2 and earlier allows remote attackers to execute arbitrary code via a (1) DAV2 REPORT query or (2) get-dated-rev svn-protocol command. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 14933 of 17672, showing 5 records out of 88360 total, starting on record 74661, ending on 74665