NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48334  CVE-2009-1024  Multiple SQL injection vulnerabilities in Beerwin PHPLinkAdmin 1.0 allow remote attackers to execute arbitrary SQL commands via the linkid parameter to edlink.php, and unspecified other vectors.    7.5  High  2017-01-07  2009-03-26  View
49358  CVE-2009-2096  SQL injection vulnerability in house/listing_view.php in phpCollegeExchange 0.1.5c allows remote attackers to execute arbitrary SQL commands via the itemnr parameter.    7.5  High  2017-01-07  2009-06-18  View
49614  CVE-2009-2367  cgi-bin/makecgi-pro in Iomega StorCenter Pro generates predictable session IDs, which allows remote attackers to hijack active sessions and gain privileges via brute force guessing attacks on the session_id parameter.    7.5  High  2017-01-07  2009-07-08  View
51918  CVE-2009-4801  EZ-Blog Beta 1 does not require authentication, which allows remote attackers to create or delete arbitrary posts via requests to PHP scripts.    7.5  High  2017-01-07  2010-05-26  View
54478  CVE-2007-2311  ** DISPUTED ** PHP remote file inclusion vulnerability in install/index.php in BlooFoxCMS 0.2.2 allows remote attackers to execute arbitrary PHP code via a URL in the content_php parameter. NOTE: this issue has been disputed by a reliable third party, stating that content_php is initialized before use.    7.5  High  2017-01-07  2008-09-05  View

Page 15140 of 17672, showing 5 records out of 88360 total, starting on record 75696, ending on 75700

Actions