NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
45511  CVE-2012-4035  The new_password page in PBBoard 2.1.4 allows remote attackers to change the password of arbitrary user accounts via the member_id and new_password parameters to index.php.    7.5  High  2017-01-19  2012-08-13  View
46023  CVE-2012-4686  SQL injection vulnerability in announcement.php in vBulletin 4.1.10 allows remote attackers to execute arbitrary SQL commands via the announcementid parameter.    7.5  High  2017-01-19  2012-08-29  View
50631  CVE-2009-3430  SQL injection vulnerability in login.php in Allomani Mobile 2.5 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.    7.5  High  2017-01-07  2009-09-28  View
51911  CVE-2009-4794  Multiple SQL injection vulnerabilities in Community CMS 0.5 allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter to view.php and the (2) a parameter in an event action to calendar.php, reachable through index.php.    7.5  High  2017-01-07  2010-04-23  View
52423  CVE-2007-0192  Cross-site request forgery (CSRF) vulnerability in the save_main operation in the ad_perms section in admin.php in MKPortal allows remote attackers to modify privilege settings, as demonstrated using a getURL of admin.php within a .swf file contained in an IFRAME element, aka the "All Guests are Admin" attack.    7.5  High  2017-01-07  2008-11-15  View

Page 15054 of 17672, showing 5 records out of 88360 total, starting on record 75266, ending on 75270

Actions