NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65766 | CVE-2006-7223 | PreviewAction in XWiki 0.9.543 through 0.9.1252 does not set the Author field to the identity of the user who last modified a document, which allows remote authenticated users without programming rights to execute arbitrary code by selecting a document whose author has programming rights, modifying this document to contain a script, and previewing without saving the document. | 2 | 6.5 | Medium | 2016-12-20 | 2008-09-05 | View | |
486 | CVE-2008-0511 | SQL injection vulnerability in index.php in the MaMML (com_mamml) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the listid parameter. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
66022 | CVE-2005-0259 | phpBB 2.0.11, and possibly other versions, with remote avatars and avatar uploading enabled, allows local users to read arbitrary files by providing both a local and remote location for an avatar, then modifying the "Upload Avatar from a URL:" field to reference the target file. | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-10 | View | |
742 | CVE-2008-0771 | Multiple SQL injection vulnerabilities in default.asp in Site2Nite allow remote attackers to execute arbitrary SQL commands via the (1) txtUserName and (2) txtPassword parameters. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
66278 | CVE-2005-0521 | SendLink 1.5 stores sensitive information, possibly including passwords, in plaintext in the data.eat file, which allows local users to gain privileges. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View |
Page 15905 of 17672, showing 5 records out of 88360 total, starting on record 79521, ending on 79525