NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8476 | CVE-2011-1546 | Multiple SQL injection vulnerabilities in Andy"s PHP Knowledgebase (Aphpkb) before 0.95.3 allow remote attackers to execute arbitrary SQL commands via the s parameter to (1) a_viewusers.php or (2) keysearch.php; and allow remote authenticated administrators to execute arbitrary SQL commands via the (3) id or (4) start parameter to pending.php, or the (5) aid parameter to a_authordetails.php. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-07 | 2011-09-21 | View | |
74012 | CVE-2003-0935 | Net-SNMP before 5.0.9 allows a user or community to access data in MIB objects, even if that data is not allowed to be viewed. | 2 | 6.4 | Medium | 2017-01-03 | 2010-08-21 | View | |
8732 | CVE-2011-1852 | Multiple stack-based buffer overflows in tftpserver.exe in HP Intelligent Management Center (IMC) 5.0 before E0101L02 allow remote attackers to execute arbitrary code via crafted packet content accompanying a (1) DATA or (2) ERROR opcode. | 2 | 10 | High | 2017-01-07 | 2013-07-17 | View | |
8988 | CVE-2011-2167 | script-login in Dovecot 2.0.x before 2.0.13 does not follow the chroot configuration setting, which might allow remote authenticated users to conduct directory traversal attacks by leveraging a script. | 2 | 6.5 | Medium | 2017-01-07 | 2013-03-07 | View | |
74524 | CVE-2003-1454 | Invision Power Services Invision Board 1.0 through 1.1.1, when a forum is password protected, stores the administrator password in a cookie in plaintext, which could allow remote attackers to gain access. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 1692 of 17672, showing 5 records out of 88360 total, starting on record 8456, ending on 8460