NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
73961  CVE-2003-0863  The php_check_safe_mode_include_dir function in fopen_wrappers.c of PHP 4.3.x returns a success value (0) when the safe_mode_include_dir variable is not specified in configuration, which differs from the previous failure value and may allow remote attackers to exploit file include vulnerabilities in PHP applications.    7.5  High  2017-01-03  2016-10-17  View
74473  CVE-2003-1403  foo.php3 in DotBr 0.1 allows remote attackers to obtain sensitive information via a direct request, which calls the phpinfo function.    7.5  High  2017-01-03  2008-09-05  View
234  CVE-2008-0249  PHP Webquest 2.6 allows remote attackers to retrieve database credentials via a direct request to admin/backup_phpwebquest.php, which leaks the credentials in an error message if a call to /usr/bin/mysqldump fails. NOTE: this might only be an issue in limited environments.    Medium  2017-01-03  2008-09-05  View
490  CVE-2008-0515  SQL injection vulnerability in index.php in the musepoes (com_musepoes) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an answer action.    7.5  High  2017-01-03  2011-03-07  View
746  CVE-2008-0775  Cross-site scripting (XSS) vulnerability in sboxDB.php in Simple Machines Forum (SMF) Shoutbox 1.14 through 1.16b allows remote attackers to inject arbitrary web script or HTML via strings to the shoutbox form that start with "&#", contain the desired script, and end with ";".    4.3  Medium  2017-01-03  2009-09-01  View

Page 15973 of 17672, showing 5 records out of 88360 total, starting on record 79861, ending on 79865

Actions