NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2587  CVE-2008-2689  PHP remote file inclusion vulnerability in pub/clients.php in BrowserCRM 5.002.00 allows remote attackers to execute arbitrary PHP code via a URL in the bcrm_pub_root parameter.    10  High  2017-01-03  2009-04-08  View
68123  CVE-2005-2432  SQL injection vulnerability in PhpList allows remote attackers to modify SQL statements via the id argument to admin pages such as (1) members or (2) admin.    7.5  High  2017-07-18  2017-07-10  View
2843  CVE-2008-2949  Cross-domain vulnerability in Microsoft Internet Explorer 6 and 7 allows remote attackers to change the location property of a frame via the String data type, and use a frame from a different domain to observe domain-independent events, as demonstrated by observing onkeydown events with caballero-listener. NOTE: according to Microsoft, this is a duplicate of CVE-2008-2947, possibly a different attack vector.    6.8  Medium  2017-01-03  2011-03-07  View
68379  CVE-2005-2690  SQL injection vulnerability in the Downloads module in PostNuke 0.760-RC4b allows PostNuke administrators to execute arbitrary SQL commands via the show parameter to dl-viewdownload.php.    7.5  High  2017-01-03  2008-09-05  View
3099  CVE-2008-3216  The save function in br/prefmanager.d in projectl 1.001 creates a projectL.prf file in the current working directory, which allows local users to overwrite arbitrary files via a symlink attack.    4.6  Medium  2017-01-03  2008-09-10  View

Page 1837 of 17672, showing 5 records out of 88360 total, starting on record 9181, ending on 9185

Actions