NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
40909  CVE-2013-5639  Directory traversal vulnerability in users/login.php in Gnew 2013.1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the gnew_language cookie.    7.5  High  2017-01-18  2014-03-12  View
43213  CVE-2012-1210  SQL injection vulnerability in pfile/file.php in Powie pFile 1.02 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-19  2012-02-24  View
48333  CVE-2009-1023  SQL injection vulnerability in index.php in phpComasy 0.9.1 allows remote attackers to execute arbitrary SQL commands via the entry_id parameter.    7.5  High  2017-01-07  2009-04-02  View
49613  CVE-2009-2366  SQL injection vulnerability in login.asp in DataCheck Solutions ForumPal FE 1.1 and ForumPal 1.5 allows remote attackers to execute arbitrary SQL commands via the (1) password parameter in 1.1 and (2) p_password parameter in 1.5. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-07  2009-07-08  View
50637  CVE-2009-3436  Multiple SQL injection vulnerabilities in forum.asp in MaxWebPortal allow remote attackers to execute arbitrary SQL commands via the (1) FORUM_ID or (2) CAT_ID parameter. NOTE: this might overlap CVE-2005-1417.    7.5  High  2017-01-07  2009-09-29  View

Page 15127 of 17672, showing 5 records out of 88360 total, starting on record 75631, ending on 75635

Actions