NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
73961 | CVE-2003-0863 | The php_check_safe_mode_include_dir function in fopen_wrappers.c of PHP 4.3.x returns a success value (0) when the safe_mode_include_dir variable is not specified in configuration, which differs from the previous failure value and may allow remote attackers to exploit file include vulnerabilities in PHP applications. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
74473 | CVE-2003-1403 | foo.php3 in DotBr 0.1 allows remote attackers to obtain sensitive information via a direct request, which calls the phpinfo function. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
234 | CVE-2008-0249 | PHP Webquest 2.6 allows remote attackers to retrieve database credentials via a direct request to admin/backup_phpwebquest.php, which leaks the credentials in an error message if a call to /usr/bin/mysqldump fails. NOTE: this might only be an issue in limited environments. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
490 | CVE-2008-0515 | SQL injection vulnerability in index.php in the musepoes (com_musepoes) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an answer action. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
746 | CVE-2008-0775 | Cross-site scripting (XSS) vulnerability in sboxDB.php in Simple Machines Forum (SMF) Shoutbox 1.14 through 1.16b allows remote attackers to inject arbitrary web script or HTML via strings to the shoutbox form that start with "&#", contain the desired script, and end with ";". | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-01 | View |
Page 15973 of 17672, showing 5 records out of 88360 total, starting on record 79861, ending on 79865