NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71931 | CVE-2004-1552 | SQL injection vulnerability in aspWebCalendar allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the eventid parameter to calendar.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
6651 | CVE-2008-6920 | Unrestricted file upload vulnerability in auth.php in phpEmployment 1.8 allows remote attackers to execute arbitrary code by uploading a file with an executable extension during a regnew action, then accessing it via a direct request to the file in photoes/. | 2 | 7.5 | High | 2017-01-03 | 2009-08-10 | View | |
72443 | CVE-2004-2066 | SQL injection vulnerability in session.php in LinPHA 0.9.4 allows remote attackers to execute arbitrary SQL code and bypass authentication via the (1) linpha_userid or (2) linpha_password cookies. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
72699 | CVE-2004-2322 | SQL injection vulnerability in the (1) announce and (2) notes modules of phpWebSite before 0.9.3-2 allows remote attackers to execute arbitrary SQL queries, as demonstrated using the ANN_id parameter to the announce module. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
73211 | CVE-2003-0064 | The dtterm terminal emulator allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user"s terminal, e.g. when the user views a file containing the malicious sequence, which could allow the attacker to execute arbitrary commands. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View |
Page 15682 of 17672, showing 5 records out of 88360 total, starting on record 78406, ending on 78410