NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57782 | CVE-2007-5725 | Multiple cross-site scripting (XSS) vulnerabilities in Smart-Shop allow remote attackers to inject arbitrary web script or HTML via (1) the email parameter to index.php; or the command parameter to index.php in (2) the default action for the home page, (3) a currencies action, or (4) a basket action. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
58038 | CVE-2007-6014 | SQL injection vulnerability in post.php in Beehive Forum 0.7.1 and earlier allows remote attackers to execute arbitrary SQL commands via the t_dedupe parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
58294 | CVE-2007-6299 | Multiple SQL injection vulnerabilities in Drupal and vbDrupal 4.7.x before 4.7.9 and 5.x before 5.4 allow remote attackers to execute arbitrary SQL commands via modules that pass input to the taxonomy_select_nodes function, as demonstrated by the (1) taxonomy_menu, (2) ajaxLoader, and (3) ubrowser contributed modules. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
59574 | CVE-2006-0844 | Leif M. Wright"s Blog 3.5 does not make a password comparison when authenticating an administrator via a cookie, which allows remote attackers to bypass login authentication, probably by setting the blogAdmin cookie. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
60598 | CVE-2006-1893 | Cross-site scripting (XSS) vulnerability in print.php in ar-blog 5.2 allows remote attackers to inject arbitrary web script or HTML via the id parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17195 of 17672, showing 5 records out of 88360 total, starting on record 85971, ending on 85975