NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
47081  CVE-2012-6142  Session::Cookie in the HTML::EP module 0.2011 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly handled when it is deserialized.    7.5  High  2017-01-19  2014-06-05  View
48873  CVE-2009-1604  Unspecified vulnerability in LimeSurvey before 1.82 allows remote attackers to execute commands and obtain sensitive data via unknown attack vectors related to /admin/remotecontrol/.    7.5  High  2017-01-07  2009-05-23  View
49385  CVE-2009-2123  Multiple SQL injection vulnerabilities in Elvin 1.2.0 allow remote attackers to execute arbitrary SQL commands via the (1) inUser (aka Username) and (2) inPass (aka Password) parameters to (a) inc/login.ei, reachable through login.php; and the (3) id parameter to (b) show_bug.php and (c) show_activity.php. NOTE: it was later reported that vector 3c also affects 1.2.2.    7.5  High  2017-01-07  2009-08-24  View
49641  CVE-2009-2394  SQL injection vulnerability in cat.php in SMSPages 1.0 in Mr.Saphp Arabic Script Mobile (aka Messages Library) 2.0 allows remote attackers to execute arbitrary SQL commands via the CatID parameter.    7.5  High  2017-01-07  2009-07-09  View
54505  CVE-2007-2338  Cross-site request forgery (CSRF) vulnerability in include/admin/banlist.php in Phorum before 5.1.22 allows remote attackers to perform unauthorized banlist deletions as an administrator via the delete parameter.    7.5  High  2017-01-07  2011-03-07  View

Page 15469 of 17672, showing 5 records out of 88360 total, starting on record 77341, ending on 77345

Actions