NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56976 | CVE-2007-4886 | Incomplete blacklist vulnerability in index.php in AuraCMS 1.x and probably 2.x allows remote attackers to execute arbitrary PHP code via a (1) UNC share pathname, or a (2) ftp, (3) ftps, or (4) ssh2.sftp URL, in the pilih parameter, for which PHP remote file inclusion is blocked only for http URLs. | 2 | 6.8 | Medium | 2017-01-07 | 2009-02-05 | View | |
| 47761 | CVE-2009-0429 | Multiple SQL injection vulnerabilities in Active Bids allow remote attackers to execute arbitrary SQL commands via the (1) search parameter to search.asp, (2) SortDir parameter to auctionsended.asp, and the (3) catid parameter to wishlist.php. | 2 | 7.5 | High | 2017-01-07 | 2009-02-05 | View | |
| 47762 | CVE-2009-0430 | Multiple cross-site scripting (XSS) vulnerabilities in Active Bids allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter to search.asp and the (2) URL parameter to tellafriend.asp. | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-05 | View | |
| 47763 | CVE-2009-0431 | SQL injection vulnerability in Default.asp in LinksPro Standard Edition allows remote attackers to execute arbitrary SQL commands via the OrderDirection parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-02-05 | View | |
| 5789 | CVE-2008-6058 | Syslserve 1.058 and earlier, and probably 1.059, allows remote attackers to cause a denial of service (hang) via a crafted UDP Syslog packet. | 2 | 5 | Medium | 2017-01-03 | 2009-02-05 | View |
Page 14946 of 17672, showing 5 records out of 88360 total, starting on record 74726, ending on 74730