NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4091 | CVE-2008-4241 | SQL injection vulnerability in CJ Ultra Plus 1.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via an SID cookie. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
69627 | CVE-2005-3989 | Memory leak in Avaya TN2602AP IP Media Resource 320 circuit pack before vintage 9 firmware allows remote attackers to cause a denial of service (memory consumption) via crafted VoIP packets. | 2 | 7.8 | High | 2017-01-03 | 2011-03-07 | View | |
4347 | CVE-2008-4524 | SQL injection vulnerability in the "Check User" feature (includes/check_user.php) in AdaptCMS Lite and AdaptCMS Pro 1.3 allows remote attackers to execute arbitrary SQL commands via the user_name parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
69883 | CVE-2005-4285 | Cross-site scripting (XSS) vulnerability in pdestore.cgi in Dick Copits PDEstore 1.8 and earlier allows remote attackers to inject arbitrary web script or HTML via (1) the search module parameter or the (2) product and (3) cart_id parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4603 | CVE-2008-4789 | The validation functionality in the core upload module in Drupal 6.x before 6.5 allows remote authenticated users to bypass intended access restrictions and "attach files to content," related to a "logic error." | 2 | 6 | Medium | 2017-01-03 | 2009-02-05 | View |
Page 16990 of 17672, showing 5 records out of 88360 total, starting on record 84946, ending on 84950