NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
273 | CVE-2008-0288 | Multiple SQL injection vulnerabilities in ImageAlbum 2.0.0b2 allow remote attackers to execute arbitrary SQL commands via the id, which is not properly handled in (1) classes/IADomain.php, (2) classes/IACollection.php, and (3) classes/IAUser.php, as demonstrated via the id parameter in a collection.imageview action. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
65809 | CVE-2005-0015 | diatheke.pl in Sword 1.5.7a allows remote attackers to execute arbitrary commands via shell metacharacters in a URL. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
529 | CVE-2008-0554 | Buffer overflow in the readImageData function in giftopnm.c in netpbm before 10.27 in netpbm before 10.27 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted GIF image, a similar issue to CVE-2006-4484. | 2 | 6.8 | Medium | 2017-01-03 | 2012-10-29 | View | |
66065 | CVE-2005-0302 | SQL injection vulnerability in default.asp in BackOffice Lite 6.0 and 6.01 allows remote attackers to execute arbitrary SQL commands via the referer field in the HTTP header. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
785 | CVE-2008-0814 | Directory traversal vulnerability in download.php in Tracking Requirements & Use Cases (TRUC) 0.11.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the upload_filename parameter. | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 1508 of 17672, showing 5 records out of 88360 total, starting on record 7536, ending on 7540