NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67663  CVE-2005-1948  Multiple SQL injection vulnerabilities in Invision Gallery before 1.3.1 allow remote attackers to execute arbitrary SQL commands via (1) the comment parameter in an editcomment action or (2) the rating parameter when voting on a photo.    7.5  High  2017-01-03  2016-10-17  View
2383  CVE-2008-2475  eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbitrary commands via the PictureUrls property.    9.3  High  2017-01-03  2009-07-09  View
67919  CVE-2005-2217  Dansie Shopping Cart stores the vars.dat file under the web root with insufficient access control, which might allow remote attackers to obtain sensitive information such as program variables.    Medium  2017-01-03  2008-09-05  View
2639  CVE-2008-2745  Stack-based buffer overflow in BiAnno ActiveX Control (BiAnno.ocx) in Black Ice Software Annotation Plugin 10.95 allows remote attackers to execute arbitrary code via a long parameter to the AnnoSaveToTiff method.    9.3  High  2017-01-03  2011-03-07  View
2895  CVE-2008-3001  The Aggregation module 5.x before 5.x-4.4 for Drupal allows remote attackers to upload files with arbitrary extensions, and possibly execute arbitrary code, via a crafted feed that allows upload of files with arbitrary extensions.    9.3  High  2017-01-03  2009-09-09  View

Page 2227 of 17672, showing 5 records out of 88360 total, starting on record 11131, ending on 11135

Actions