NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4347 | CVE-2008-4524 | SQL injection vulnerability in the "Check User" feature (includes/check_user.php) in AdaptCMS Lite and AdaptCMS Pro 1.3 allows remote attackers to execute arbitrary SQL commands via the user_name parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
69883 | CVE-2005-4285 | Cross-site scripting (XSS) vulnerability in pdestore.cgi in Dick Copits PDEstore 1.8 and earlier allows remote attackers to inject arbitrary web script or HTML via (1) the search module parameter or the (2) product and (3) cart_id parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4603 | CVE-2008-4789 | The validation functionality in the core upload module in Drupal 6.x before 6.5 allows remote authenticated users to bypass intended access restrictions and "attach files to content," related to a "logic error." | 2 | 6 | Medium | 2017-01-03 | 2009-02-05 | View | |
70139 | CVE-2005-4550 | The PORTAL schema in Oracle Application Server (OracleAS) Discussion Forum Portlet allows remote attackers to obtain the source code for arbitrary JSP and other files via a df_next_page parameter with a trailing null byte (%00). | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
4859 | CVE-2008-5072 | vsfilter.dll in K-Lite Mega Codec Pack 3.5.7.0 allows remote attackers to cause a denial of service (application crash) via a malformed FLV file. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 17379 of 17672, showing 5 records out of 88360 total, starting on record 86891, ending on 86895