NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 40933 | CVE-2013-5674 | badges/external.php in Moodle 2.5.x before 2.5.2 does not properly handle an object obtained by unserializing a description of an external badge, which allows remote attackers to conduct PHP object injection attacks via unspecified vectors, as demonstrated by overwriting the value of the userid parameter. | 2 | 7.5 | High | 2017-01-18 | 2013-09-25 | View | |
| 42213 | CVE-2012-0069 | SQL injection vulnerability in ajax.php in Batavi before 1.2.1 allows remote attackers to execute arbitrary SQL commands via the boxToReload parameter. | 2 | 7.5 | High | 2017-01-19 | 2012-01-24 | View | |
| 43493 | CVE-2012-1618 | Interaction error in the PostgreSQL JDBC driver before 8.2, when used with a PostgreSQL server with the "standard_conforming_strings" option enabled, such as the default configuration of PostgreSQL 9.1, does not properly escape unspecified JDBC statement parameters, which allows remote attackers to perform SQL injection attacks. NOTE: as of 20120330, it was claimed that the upstream developer planned to dispute this issue, but an official dispute has not been posted as of 20121005. | 2 | 7.5 | High | 2017-01-19 | 2012-10-08 | View | |
| 44517 | CVE-2012-2821 | The autofill implementation in Google Chrome before 20.0.1132.43 does not properly display text, which has unspecified impact and remote attack vectors. | 2 | 7.5 | High | 2017-01-19 | 2012-08-13 | View | |
| 47845 | CVE-2009-0513 | Multiple PHP remote file inclusion vulnerabilities in WebFrame 0.76 allow remote attackers to execute arbitrary PHP code via a URL in the classFiles parameter to (1) admin/doc/index.php, (2) index.php, and (3) base/menu.php in mod/. | 2 | 7.5 | High | 2017-01-07 | 2009-02-11 | View |
Page 15422 of 17672, showing 5 records out of 88360 total, starting on record 77106, ending on 77110