NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72304 | CVE-2004-1926 | Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allows remote attackers to inject arbitrary code via the (1) Theme, (2) Country, (3) Real Name, or (4) Displayed time zone fields in a User Profile, or the (5) Name, (6) Description, (7) URL, or (8) Country fields in a Directory/Add Site operation. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View | |
72560 | CVE-2004-2183 | Unknown vulnerability in WeHelpBUS 0.1 allows remote attackers to execute arbitrary shell commands via the query string. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
73072 | CVE-2004-2695 | SQL injection vulnerability in the Authorize.net callback code (subscriptions/authorize.php) in Jelsoft vBulletin 3.0 through 3.0.3 allows remote attackers to execute arbitrary SQL statements via the x_invoice_num parameter. NOTE: this issue might be related to CVE-2006-4267. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
58992 | CVE-2006-0252 | SQL injection vulnerability in Benders Calendar 1.0 allows remote attackers to execute arbitrary SQL commands via multiple parameters, as demonstrated by the (1) year, (2) month, and (3) day parameters. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
59248 | CVE-2006-0510 | SQL injection vulnerability in userlogin.jsp in Daffodil CRM 1.5 allows remote attackers to execute arbitrary SQL commands via unspecified parameters in a login action. | 2 | 7.5 | High | 2016-12-20 | 2011-08-05 | View |
Page 16817 of 17672, showing 5 records out of 88360 total, starting on record 84081, ending on 84085