NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
44054  CVE-2012-2227  Directory traversal vulnerability in update/index.php in PluXml before 5.1.6 allows remote attackers to include and execute arbitrary local files via a ..%2F (encoded dot dot slash) in the default_lang parameter.    7.5  High  2017-01-19  2012-10-30  View
47126  CVE-2012-6354  The management GUI on the IBM SAN Volume Controller and Storwize V7000 6.x before 6.4.1.3 allows remote attackers to bypass authentication and obtain superuser access via IP packets.    7.5  High  2017-01-19  2013-02-20  View
48918  CVE-2009-1649  Directory traversal vulnerability in arch.php in beLive 0.2.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the arch parameter.    7.5  High  2017-01-07  2009-05-18  View
49174  CVE-2009-1909  SQL injection vulnerability in Skip 1.0.2 and earlier, and 1.1RC2 and earlier 1.1RC versions, allows remote attackers to execute arbitrary SQL commands via unspecified vectors.    7.5  High  2017-01-07  2009-06-05  View
49430  CVE-2009-2168  cpanel/login.php in EgyPlus 7ammel (aka 7ml) 1.0.1 and earlier sends a redirect to the web browser but does not exit when the supplied credentials are incorrect, which allows remote attackers to bypass authentication by providing arbitrary username and password parameters.    7.5  High  2017-01-07  2009-06-23  View

Page 2194 of 17672, showing 5 records out of 88360 total, starting on record 10966, ending on 10970

Actions