NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68310  CVE-2005-2621  index.php in ECW-Shop 6.0.2 allows remote attackers to obtain sensitive information via the (1) min or (2) max parameter with a """ (single quote), which reveals the path in an error message, possibly due to a SQL injection vulnerability.    Medium  2017-01-03  2016-10-17  View
3030  CVE-2008-3146  Multiple buffer overflows in packet_ncp2222.inc in Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allow attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted NCP packet that causes an invalid pointer to be used.    10  High  2017-01-03  2011-03-15  View
3286  CVE-2008-3405  Directory traversal vulnerability in index.php in Ricardo Amaral nzFotolog 0.4.1 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the action_file parameter.    6.8  Medium  2017-01-03  2009-01-29  View
68822  CVE-2005-3160  Multiple SQL injection vulnerabilities in photogallery.php in PHP-Fusion allow remote attackers to execute arbitrary SQL commands via the (1) album and (2) photo parameters.    7.5  High  2017-01-03  2008-09-05  View
3542  CVE-2008-3675  Directory traversal vulnerability in classes/imgsize.php in Gelato 0.95 allows remote attackers to read arbitrary files via (1) a .. (dot dot) and possibly (2) a full pathname in the img parameter. NOTE: some of these details are obtained from third party information.    Medium  2017-01-03  2009-02-06  View

Page 15129 of 17672, showing 5 records out of 88360 total, starting on record 75641, ending on 75645

Actions