NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5338 | CVE-2008-5589 | SQL injection vulnerability in processlogin.asp in Katy Whitton RankEm allows remote attackers to execute arbitrary SQL commands via the (1) txtusername parameter (aka username field) or the (2) txtpassword parameter (aka password field). NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-03 | 2016-11-18 | View | |
5594 | CVE-2008-5863 | SQL injection vulnerability in locator.php in the Userlocator module 3.0 for Woltlab Burning Board (wBB) allows remote attackers to execute arbitrary SQL commands via the y parameter in a get_user action. | 2 | 7.5 | High | 2017-01-03 | 2009-02-12 | View | |
71130 | CVE-2004-0703 | Unknown vulnerability in the administrative controls in Bugzilla 2.17.1 through 2.17.7 allows users with "grant membership" privileges to grant memberships to groups that the user does not control. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
5850 | CVE-2008-6119 | Static code injection vulnerability in gooplecms/admin/account/action/editpass.php in Goople CMS 1.7 allows remote attackers to inject arbitrary PHP code into admin/userandpass.php via the (1) username and (2) password parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-03 | 2009-08-15 | View | |
71386 | CVE-2004-0984 | Unknown vulnerability in the dotlock implementation in mailutils before 1:0.5-4 on Debian GNU/Linux allows attackers to gain privileges. | 2 | 7.2 | High | 2016-12-20 | 2008-09-10 | View |
Page 16286 of 17672, showing 5 records out of 88360 total, starting on record 81426, ending on 81430