NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
4091  CVE-2008-4241  SQL injection vulnerability in CJ Ultra Plus 1.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via an SID cookie.    7.5  High  2017-01-03  2011-03-07  View
69627  CVE-2005-3989  Memory leak in Avaya TN2602AP IP Media Resource 320 circuit pack before vintage 9 firmware allows remote attackers to cause a denial of service (memory consumption) via crafted VoIP packets.    7.8  High  2017-01-03  2011-03-07  View
4347  CVE-2008-4524  SQL injection vulnerability in the "Check User" feature (includes/check_user.php) in AdaptCMS Lite and AdaptCMS Pro 1.3 allows remote attackers to execute arbitrary SQL commands via the user_name parameter.    7.5  High  2017-01-03  2009-01-29  View
69883  CVE-2005-4285  Cross-site scripting (XSS) vulnerability in pdestore.cgi in Dick Copits PDEstore 1.8 and earlier allows remote attackers to inject arbitrary web script or HTML via (1) the search module parameter or the (2) product and (3) cart_id parameters.    4.3  Medium  2017-01-03  2011-03-07  View
4603  CVE-2008-4789  The validation functionality in the core upload module in Drupal 6.x before 6.5 allows remote authenticated users to bypass intended access restrictions and "attach files to content," related to a "logic error."    Medium  2017-01-03  2009-02-05  View

Page 16990 of 17672, showing 5 records out of 88360 total, starting on record 84946, ending on 84950

Actions