NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 70416 | CVE-2005-4827 | Internet Explorer 6.0, and possibly other versions, allows remote attackers to bypass the same origin security policy and make requests outside of the intended domain by calling open on an XMLHttpRequest object (Microsoft.XMLHTTP) and using tab, newline, and carriage return characters within the first argument (method name), which is supported by some proxy servers that convert tabs to spaces. NOTE: this issue can be leveraged to conduct referer spoofing, HTTP Request Smuggling, and other attacks. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 5392 | CVE-2008-5650 | SQL injection vulnerability in the login directory in AlstraSoft Web Host Directory allows remote attackers to execute arbitrary SQL commands via the pwd parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-12 | View | |
| 6160 | CVE-2008-6429 | SQL injection vulnerability in the PrayerCenter (com_prayercenter) component 1.4.9 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a view_request action to index2.php. | 2 | 7.5 | High | 2017-01-03 | 2009-04-02 | View | |
| 6416 | CVE-2008-6685 | Unspecified vulnerability in Frontend Filemanager (air_filemanager) 0.6.1 and earlier extension for TYPO3 allows remote attackers to execute arbitrary commands via unknown vectors. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
| 6672 | CVE-2008-6941 | SQL injection vulnerability in the login functionality in TurnkeyForms Web Hosting Directory allows remote attackers to execute arbitrary SQL commands via the password field. | 2 | 7.5 | High | 2017-01-03 | 2009-09-02 | View |
Page 2120 of 17672, showing 5 records out of 88360 total, starting on record 10596, ending on 10600