NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2300 | CVE-2008-2381 | SQL injection vulnerability in the create function in common/include/GroupJoinRequest.class in GForge 4.5 and 4.6 allows remote attackers to execute arbitrary SQL commands via the comments variable. | 2 | 7.5 | High | 2017-01-03 | 2009-02-26 | View | |
67836 | CVE-2005-2132 | RPC portmapper (rpcbind) in SCO UnixWare 7.1.1 m5, 7.1.3 mp5, and 7.1.4 mp2 allows remote attackers or local users to cause a denial of service (lack of response) via multiple invalid portmap requests. | 2 | 2.1 | Low | 2017-01-03 | 2016-10-17 | View | |
2556 | CVE-2008-2650 | Directory traversal vulnerability in cmsimple/cms.php in CMSimple 3.1, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the sl parameter to index.php. NOTE: this can be leveraged for remote file execution by including adm.php and then invoking the upload action. NOTE: on 20080601, the vendor patched 3.1 without changing the version number. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-14 | View | |
68092 | CVE-2005-2400 | The inc.login.php scripts in PHPFinance 0.3 allows remote attackers to bypass the login and gain privileges. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
2812 | CVE-2008-2918 | SQL injection vulnerability in details.php in Application Dynamics Cartweaver 3.0 allows remote attackers to execute arbitrary SQL commands via the prodId parameter, possibly a related issue to CVE-2006-2046.3. | 2 | 7.5 | High | 2017-01-03 | 2009-04-08 | View |
Page 17406 of 17672, showing 5 records out of 88360 total, starting on record 87026, ending on 87030