NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
70416  CVE-2005-4827  Internet Explorer 6.0, and possibly other versions, allows remote attackers to bypass the same origin security policy and make requests outside of the intended domain by calling open on an XMLHttpRequest object (Microsoft.XMLHTTP) and using tab, newline, and carriage return characters within the first argument (method name), which is supported by some proxy servers that convert tabs to spaces. NOTE: this issue can be leveraged to conduct referer spoofing, HTTP Request Smuggling, and other attacks.    7.5  High  2017-01-03  2008-09-05  View
5392  CVE-2008-5650  SQL injection vulnerability in the login directory in AlstraSoft Web Host Directory allows remote attackers to execute arbitrary SQL commands via the pwd parameter.    7.5  High  2017-01-03  2009-08-12  View
6160  CVE-2008-6429  SQL injection vulnerability in the PrayerCenter (com_prayercenter) component 1.4.9 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a view_request action to index2.php.    7.5  High  2017-01-03  2009-04-02  View
6416  CVE-2008-6685  Unspecified vulnerability in Frontend Filemanager (air_filemanager) 0.6.1 and earlier extension for TYPO3 allows remote attackers to execute arbitrary commands via unknown vectors.    7.5  High  2017-01-03  2009-08-19  View
6672  CVE-2008-6941  SQL injection vulnerability in the login functionality in TurnkeyForms Web Hosting Directory allows remote attackers to execute arbitrary SQL commands via the password field.    7.5  High  2017-01-03  2009-09-02  View

Page 2120 of 17672, showing 5 records out of 88360 total, starting on record 10596, ending on 10600

Actions