NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
14343  CVE-2010-2912  SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL commands via the _a parameter in a downloads action.    7.5  High  2017-01-18  2010-07-29  View
80135  CVE-2002-1142  Heap-based buffer overflow in the Remote Data Services (RDS) component of Microsoft Data Access Components (MDAC) 2.1 through 2.6, and Internet Explorer 5.01 through 6.0, allows remote attackers to execute code via a malformed HTTP request to the Data Stub.    7.5  High  2017-01-05  2008-09-10  View
80903  CVE-2002-1952  phpRank 1.8 does not properly check the return codes for MySQL operations when authenticating users, which could allow remote attackers to authenticate using a NULL password when database errors occur or if the database is unavailable.    7.5  High  2017-01-05  2008-09-05  View
15623  CVE-2010-4368  awstats.cgi in AWStats before 7.0 on Windows accepts a configdir parameter in the URL, which allows remote attackers to execute arbitrary commands via a crafted configuration file located at a UNC share pathname.    7.5  High  2017-01-18  2010-12-03  View
15879  CVE-2010-4632  Multiple SQL injection vulnerabilities in ASPilot Pilot Cart 7.3 allow remote attackers to execute arbitrary SQL commands via the (1) article parameter to kb.asp, (2) specific parameter to cart.asp, (3) countrycode parameter to contact.asp, and the (4) srch parameter to search.asp. NOTE: the article parameter to pilot.asp is already covered by CVE-2008-2688.    7.5  High  2017-01-18  2010-12-31  View

Page 2015 of 17672, showing 5 records out of 88360 total, starting on record 10071, ending on 10075

Actions