NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12224  CVE-2010-0677  SQL injection vulnerability in index.php in Katalog Stron Hurricane 1.3.5, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the get parameter.    7.5  High  2017-01-18  2010-02-23  View
13248  CVE-2010-1744  SQL injection vulnerability in product.html in B2B Gold Script allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-18  2010-05-21  View
79296  CVE-2002-0286  The GetPassword function in function.php of SiteNews 0.10 and 0.11 allows remote attackers to gain privileges and add users by providing a non-existent user name and the MD5 checksum for an empty password to add_user.php, which causes GetPassword to produce and compare a blank password for the non-existent user.    7.5  High  2017-07-18  2017-07-10  View
79552  CVE-2002-0547  Buffer overflow in the mini-browser for Winamp 2.79 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in the title field of an ID3v2 tag.    7.5  High  2017-01-05  2008-09-05  View
79808  CVE-2002-0809  Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, does not properly handle URL-encoded field names that are generated by some browsers, which could cause certain fields to appear to be unset, which has the effect of removing group permissions on bugs when buglist.cgi is provided with the encoded field names.    7.5  High  2017-01-05  2008-09-05  View

Page 14969 of 17672, showing 5 records out of 88360 total, starting on record 74841, ending on 74845

Actions