NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56976  CVE-2007-4886  Incomplete blacklist vulnerability in index.php in AuraCMS 1.x and probably 2.x allows remote attackers to execute arbitrary PHP code via a (1) UNC share pathname, or a (2) ftp, (3) ftps, or (4) ssh2.sftp URL, in the pilih parameter, for which PHP remote file inclusion is blocked only for http URLs.    6.8  Medium  2017-01-07  2009-02-05  View
47761  CVE-2009-0429  Multiple SQL injection vulnerabilities in Active Bids allow remote attackers to execute arbitrary SQL commands via the (1) search parameter to search.asp, (2) SortDir parameter to auctionsended.asp, and the (3) catid parameter to wishlist.php.    7.5  High  2017-01-07  2009-02-05  View
47762  CVE-2009-0430  Multiple cross-site scripting (XSS) vulnerabilities in Active Bids allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter to search.asp and the (2) URL parameter to tellafriend.asp.    4.3  Medium  2017-01-07  2009-02-05  View
47763  CVE-2009-0431  SQL injection vulnerability in Default.asp in LinksPro Standard Edition allows remote attackers to execute arbitrary SQL commands via the OrderDirection parameter.    7.5  High  2017-01-07  2009-02-05  View
5789  CVE-2008-6058  Syslserve 1.058 and earlier, and probably 1.059, allows remote attackers to cause a denial of service (hang) via a crafted UDP Syslog packet.    Medium  2017-01-03  2009-02-05  View

Page 14946 of 17672, showing 5 records out of 88360 total, starting on record 74726, ending on 74730

Actions