NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6716  CVE-2008-6985  Multiple SQL injection vulnerabilities in includes/classes/shopping_cart.php in Zen Cart 1.2.0 through 1.3.8a, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the id parameter when (1) adding or (2) updating the shopping cart.    6.8  Medium  2017-01-03  2009-09-01  View
72252  CVE-2004-1874  Multiple cross-site scripting (XSS) vulnerabilities in (1) deliver.asp and (2) billing.asp in A-CART Pro and A-CART 2.0 allow remote attackers to inject arbitrary web script or HTML via the user information forms.    4.3  Medium  2017-07-18  2017-07-10  View
6972  CVE-2008-7241  Cross-site request forgery (CSRF) vulnerability in PunBB before 1.2.17 allows remote attackers to hijack the authentication of unspecified users for requests related to a logout, probably a forced logout.    6.8  Medium  2017-01-03  2009-09-18  View
73276  CVE-2003-0129  Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (memory consumption) via a mail message that is uuencoded multiple times.    Medium  2017-01-03  2016-10-17  View
73532  CVE-2003-0402  The default login template (/vgn/login) in Vignette StoryServer 5 and Vignette V/5 generates different responses whether a user exists or not, which allows remote attackers to identify valid usernames via brute force attacks.    Medium  2017-01-03  2016-10-17  View

Page 2166 of 17672, showing 5 records out of 88360 total, starting on record 10826, ending on 10830

Actions