NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
474  CVE-2008-0499  SQL injection vulnerability in Mambo LaiThai 4.5.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.    7.5  High  2017-01-03  2011-03-07  View
66778  CVE-2005-1029  Multiple SQL injection vulnerabilities in Active Auction House allow remote attackers to execute arbitrary SQL commands via the (1) catid, (2) SortDir, or (3) Sortby parameter to default.asp, (4) itemID parameter to ItemInfo.asp, or (5) Email field to sendpassword.asp.    7.5  High  2017-07-18  2017-07-10  View
67034  CVE-2005-1295  include.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument.    7.5  High  2017-01-03  2016-10-17  View
67546  CVE-2005-1822  Multiple SQL injection vulnerabilities in Qualiteam X-Cart 4.0.8 allow remote attackers to execute arbitrary SQL commands via the (1) cat or (2) printable parameter to home.php, (3) productid or (4) mode parameter to product.php, (5) id parameter to error_message.php, (6) section parameter to help.php, (7) mode parameter to orders.php, (8) mode parameter to register.php, (9) mode parameter to search.php, or the (10) gcid or (11) gcindex parameter to giftcert.php.    7.5  High  2017-07-18  2017-07-10  View
2266  CVE-2008-2347  MyPicGallery 1.0 allows remote attackers to bypass application authentication and gain administrative access by setting the userID parameter to "admin" in a direct request to admin/addUser.php.    7.5  High  2017-01-03  2008-09-05  View

Page 15281 of 17672, showing 5 records out of 88360 total, starting on record 76401, ending on 76405

Actions