NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6716 | CVE-2008-6985 | Multiple SQL injection vulnerabilities in includes/classes/shopping_cart.php in Zen Cart 1.2.0 through 1.3.8a, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the id parameter when (1) adding or (2) updating the shopping cart. | 2 | 6.8 | Medium | 2017-01-03 | 2009-09-01 | View | |
| 72252 | CVE-2004-1874 | Multiple cross-site scripting (XSS) vulnerabilities in (1) deliver.asp and (2) billing.asp in A-CART Pro and A-CART 2.0 allow remote attackers to inject arbitrary web script or HTML via the user information forms. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 6972 | CVE-2008-7241 | Cross-site request forgery (CSRF) vulnerability in PunBB before 1.2.17 allows remote attackers to hijack the authentication of unspecified users for requests related to a logout, probably a forced logout. | 2 | 6.8 | Medium | 2017-01-03 | 2009-09-18 | View | |
| 73276 | CVE-2003-0129 | Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (memory consumption) via a mail message that is uuencoded multiple times. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 73532 | CVE-2003-0402 | The default login template (/vgn/login) in Vignette StoryServer 5 and Vignette V/5 generates different responses whether a user exists or not, which allows remote attackers to identify valid usernames via brute force attacks. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 2166 of 17672, showing 5 records out of 88360 total, starting on record 10826, ending on 10830