NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3087  CVE-2008-3204  SQL injection vulnerability in tops_top.php in E-topbiz Million Pixels 3 allows remote attackers to execute arbitrary SQL commands via the id_cat parameter.    7.5  High  2017-01-03  2009-01-29  View
69647  CVE-2005-4009  Multiple SQL injection vulnerabilities in PHP Lite Calendar Express 2.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cid and (2) catid parameters to (a) day.php, (b) week.php, (c) month.php, and (d) year.php.    7.5  High  2017-01-03  2008-09-20  View
71695  CVE-2004-1315  viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrases to highlight, which allows remote attackers to execute arbitrary PHP code by double-encoding the highlight value so that special characters are inserted into the result, which is then processed by PHP exec, as exploited by the Santy.A worm.    7.5  High  2017-07-18  2017-07-10  View
6671  CVE-2008-6940  TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain a database backup via a direct request to admin/backup/db.    7.5  High  2017-01-03  2009-08-12  View
7695  CVE-2011-0645  SQL injection vulnerability in data.php in PHPCMS 2008 V2 allows remote attackers to execute arbitrary SQL commands via the where_time parameter in a get action.    7.5  High  2017-01-07  2011-02-04  View

Page 2108 of 17672, showing 5 records out of 88360 total, starting on record 10536, ending on 10540

Actions