NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4348 | CVE-2008-4525 | SQL injection vulnerability in index.php in AmpJuke 0.7.5 allows remote attackers to execute arbitrary SQL commands via the special parameter in a performerid action. | 2 | 7.5 | High | 2017-01-03 | 2008-12-20 | View | |
69884 | CVE-2005-4286 | Unspecified vulnerability in PhpLogCon before 1.2.2 allows remote attackers to use arbitrary profiles via unknown vectors involving ""smart" values for userid and password," probably involving an SQL injection vulnerability in the (1) pass and (2) usr parameters in submit.php. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
4604 | CVE-2008-4790 | The core upload module in Drupal 5.x before 5.11 allows remote authenticated users to bypass intended access restrictions and read "files attached to content" via unknown vectors. | 2 | 6 | Medium | 2017-01-03 | 2009-02-05 | View | |
70140 | CVE-2005-4551 | Cross-site scripting (XSS) vulnerability in sign.php in codegrrl SimpBook 1.0, when html_enable is on, allows remote attackers to inject arbitrary web script or HTML via the message parameter to index.php. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
4860 | CVE-2008-5073 | Heap-based buffer overflow in an ActiveX control in Novell ZENworks Desktop Management 6.5 allows remote attackers to execute arbitrary code via a long argument to the CanUninstall method. | 2 | 9.3 | High | 2017-01-03 | 2009-01-29 | View |
Page 17409 of 17672, showing 5 records out of 88360 total, starting on record 87041, ending on 87045