NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80870 | CVE-2002-1919 | SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password fields. | 2 | 7.5 | High | 2017-01-05 | 2009-04-11 | View | |
15590 | CVE-2010-4335 | The _validatePost function in libs/controller/components/security.php in CakePHP 1.3.x through 1.3.5 and 1.2.8 allows remote attackers to modify the internal Cake cache and execute arbitrary code via a crafted data[_Token][fields] value that is processed by the unserialize function, as demonstrated by modifying the file_map cache to execute arbitrary local files. | 2 | 7.5 | High | 2017-01-18 | 2011-01-22 | View | |
15846 | CVE-2010-4597 | Stack-based buffer overflow in the save method in the IntegraXor.Project ActiveX control in igcomm.dll in Ecava IntegraXor Human-Machine Interface (HMI) before 3.5.3900.10 allows remote attackers to execute arbitrary code via a long string in the second argument. | 2 | 10 | High | 2017-01-18 | 2011-01-11 | View | |
81382 | CVE-2002-2431 | Unspecified vulnerability in GoAhead WebServer before 2.1.4 allows remote attackers to cause "incorrect behavior" via unknown "malicious code," related to incorrect use of the socketInputBuffered function by sockGen.c. | 2 | 7.5 | High | 2017-01-05 | 2009-02-09 | View | |
16102 | CVE-2010-4867 | Directory traversal vulnerability in search.php3 (aka search.php) in W-Agora 4.2.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the bn parameter. | 2 | 7.5 | High | 2017-01-18 | 2012-02-13 | View |
Page 16631 of 17672, showing 5 records out of 88360 total, starting on record 83151, ending on 83155