NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
41718  CVE-2013-6839  SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id].    7.5  High  2017-01-18  2013-12-16  View
44534  CVE-2012-2841  Integer underflow in the exif_entry_get_value function in exif-entry.c in the EXIF Tag Parsing Library (aka libexif) 0.6.20 might allow remote attackers to execute arbitrary code via vectors involving a crafted buffer-size parameter during the formatting of an EXIF tag, leading to a heap-based buffer overflow.    7.5  High  2017-01-19  2016-11-28  View
48886  CVE-2009-1617  Teraway LinkTracker 1.0 allows remote attackers to bypass authentication and gain administrative access via a userid=1&lvl=1 value for the twLTadmin cookie.    7.5  High  2017-01-07  2009-05-12  View
50422  CVE-2009-3217  SQL injection vulnerability in the admin module in iWiccle 1.01 allows remote attackers to execute arbitrary SQL commands via the member_id parameter in an edit_user action to index.php.    7.5  High  2017-01-07  2009-09-17  View
50934  CVE-2009-3754  Multiple SQL injection vulnerabilities in phpBMS 0.96 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to modules/bms/invoices_discount_ajax.php, (2) f parameter to dbgraphic.php, and (3) tid parameter in a show action to advancedsearch.php.    7.5  High  2017-01-07  2009-10-23  View

Page 15624 of 17672, showing 5 records out of 88360 total, starting on record 78116, ending on 78120

Actions