NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8433 | CVE-2011-1502 | Liferay Portal Community Edition (CE) 6.x before 6.0.6 GA, when Apache Tomcat is used, allows remote authenticated users to read arbitrary files via an entity declaration in conjunction with an entity reference, related to an XML External Entity (aka XXE) issue. | 2 | 4 | Medium | 2017-01-07 | 2011-05-31 | View | |
73969 | CVE-2003-0874 | Multiple SQL injection vulnerabilities in DeskPRO 1.1.0 and earlier allow remote attackers to insert arbitrary SQL and conduct unauthorized activities via (1) the cat parameter in faq.php, (2) the article parameter in faq.php, (3) the tickedid parameter in view.php, and (4) the Password entry on the logon screen. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74225 | CVE-2003-1153 | byteHoard 0.7 and 0.71 allows remote attackers to list arbitrary files and directories via a direct request to files.inc.php. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74481 | CVE-2003-1411 | PHP remote file inclusion vulnerability in emailreader_execute_on_each_page.inc.php in Cedric Email Reader 0.4 allows remote attackers to execute arbitrary PHP code via the emailreader_ini parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
9969 | CVE-2011-3294 | Cross-site scripting (XSS) vulnerability in the login page in the administrative interface on Cisco TelePresence Video Communication Servers (VCS) with software before X7.0 allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header, aka Bug ID CSCts80342. | 2 | 4.3 | Medium | 2017-01-07 | 2012-05-14 | View |
Page 17136 of 17672, showing 5 records out of 88360 total, starting on record 85676, ending on 85680