NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 72790 | CVE-2004-2413 | SQL injection vulnerability in VP-ASP Shopping Cart 4.0 through 5.0 allows remote attackers to execute arbitrary SQL commands via the (1) Processed0 and (2) Processed1 parameters in a POST request to shopproductselect.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72789 | CVE-2004-2412 | Multiple SQL injection vulnerabilities in VP-ASP Shopping Cart 4.0 through 5.0 allow remote attackers to execute arbitrary SQL commands via the catalogid parameter in (1) shopreviewlist.asp and (2) shopreviewadd.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 72788 | CVE-2004-2411 | The CleanseMessage function in shop$db.asp for VP-ASP Shopping Cart 4.0 through 5.0 does not sufficiently cleanse inputs, which allows remote attackers to conduct cross-site scripting (XSS) attacks that do not use <script> tags, as demonstrated via javascript in IMG tags to (1) the cat parameter in shopdisplayproducts.asp or (2) the msg parameter in shoperror.asp, and possibly other vectors. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 72787 | CVE-2004-2410 | Unknown vulnerability in sh_hash_compdata for Samhain 1.8.9 through 2.0.1 might allow attackers to cause a denial of service (null pointer dereference). | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View | |
| 72786 | CVE-2004-2409 | Buffer overflow in the sh_hash_compdata function for Samhain 1.8.9 through 2.0.1, when running in update mode ("-t update"), might allow attackers to execute arbitrary code. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View |
Page 15563 of 17672, showing 5 records out of 88360 total, starting on record 77811, ending on 77815