NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62908  CVE-2006-4269  ** DISPUTED ** PHP remote file inclusion vulnerability in admin.x-shop.php in the x-shop component (com_x-shop) 1.7 and earlier for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: this issue has been disputed by third party researchers, stating that there is no mosConfig_absolute_path parameter and no admin.x-shop.php file in the reported package.    7.5  High  2016-12-20  2008-09-05  View
63164  CVE-2006-4531  PHP remote file inclusion vulnerability in lib/config.php in Pheap CMS 1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the lpref parameter.    7.5  High  2016-12-20  2012-12-12  View
65725  CVE-2006-7182  PHP remote file inclusion vulnerability in noticias.php in MNews 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the inc parameter.    10  High  2016-12-20  2008-09-05  View
445  CVE-2008-0467  Stack-based buffer overflow in Firebird before 2.0.4, and 2.1.x before 2.1.0 RC1, might allow remote attackers to execute arbitrary code via a long username.    10  High  2017-01-03  2011-03-07  View
65981  CVE-2005-0217  SQL injection vulnerability in index.php in Invision Community Blog allows remote attackers to execute arbitrary SQL commands via the eid parameter.    7.5  High  2017-07-18  2017-07-10  View

Page 15481 of 17672, showing 5 records out of 88360 total, starting on record 77401, ending on 77405

Actions