NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11145  CVE-2011-4806  Multiple cross-site scripting (XSS) vulnerabilities in main.php in phpAlbum 0.4.1.16 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) var1 and (2) keyword parameters.    4.3  Medium  2017-01-07  2012-02-10  View
11144  CVE-2011-4805  Cross-site scripting (XSS) vulnerability in pubDBLogon.jsp in SAP Crystal Report Server 2008 allows remote attackers to inject arbitrary web script or HTML via the service parameter.    4.3  Medium  2017-01-07  2012-02-10  View
11143  CVE-2011-4804  Directory traversal vulnerability in the obSuggest (com_obsuggest) component before 1.8 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.    Medium  2017-01-07  2012-02-10  View
11142  CVE-2011-4803  SQL injection vulnerability in wptouch/ajax.php in the WPTouch plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-07  2012-03-05  View
11141  CVE-2011-4802  Multiple SQL injection vulnerabilities in Dolibarr 3.1.0 RC and probably earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) sortfield, (2) sortorder, and (3) sall parameters to user/index.php and (b) user/group/index.php; the id parameter to (4) info.php, (5) perms.php, (6) param_ihm.php, (7) note.php, and (8) fiche.php in user/; and (9) rowid parameter to admin/boxes.php.    6.5  Medium  2017-01-07  2012-03-05  View

Page 15444 of 17672, showing 5 records out of 88360 total, starting on record 77216, ending on 77220

Actions