NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 47081 | CVE-2012-6142 | Session::Cookie in the HTML::EP module 0.2011 for Perl does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly handled when it is deserialized. | 2 | 7.5 | High | 2017-01-19 | 2014-06-05 | View | |
| 48873 | CVE-2009-1604 | Unspecified vulnerability in LimeSurvey before 1.82 allows remote attackers to execute commands and obtain sensitive data via unknown attack vectors related to /admin/remotecontrol/. | 2 | 7.5 | High | 2017-01-07 | 2009-05-23 | View | |
| 49385 | CVE-2009-2123 | Multiple SQL injection vulnerabilities in Elvin 1.2.0 allow remote attackers to execute arbitrary SQL commands via the (1) inUser (aka Username) and (2) inPass (aka Password) parameters to (a) inc/login.ei, reachable through login.php; and the (3) id parameter to (b) show_bug.php and (c) show_activity.php. NOTE: it was later reported that vector 3c also affects 1.2.2. | 2 | 7.5 | High | 2017-01-07 | 2009-08-24 | View | |
| 49641 | CVE-2009-2394 | SQL injection vulnerability in cat.php in SMSPages 1.0 in Mr.Saphp Arabic Script Mobile (aka Messages Library) 2.0 allows remote attackers to execute arbitrary SQL commands via the CatID parameter. | 2 | 7.5 | High | 2017-01-07 | 2009-07-09 | View | |
| 54505 | CVE-2007-2338 | Cross-site request forgery (CSRF) vulnerability in include/admin/banlist.php in Phorum before 5.1.22 allows remote attackers to perform unauthorized banlist deletions as an administrator via the delete parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View |
Page 15469 of 17672, showing 5 records out of 88360 total, starting on record 77341, ending on 77345