NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 67663 | CVE-2005-1948 | Multiple SQL injection vulnerabilities in Invision Gallery before 1.3.1 allow remote attackers to execute arbitrary SQL commands via (1) the comment parameter in an editcomment action or (2) the rating parameter when voting on a photo. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 2383 | CVE-2008-2475 | eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbitrary commands via the PictureUrls property. | 2 | 9.3 | High | 2017-01-03 | 2009-07-09 | View | |
| 67919 | CVE-2005-2217 | Dansie Shopping Cart stores the vars.dat file under the web root with insufficient access control, which might allow remote attackers to obtain sensitive information such as program variables. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 2639 | CVE-2008-2745 | Stack-based buffer overflow in BiAnno ActiveX Control (BiAnno.ocx) in Black Ice Software Annotation Plugin 10.95 allows remote attackers to execute arbitrary code via a long parameter to the AnnoSaveToTiff method. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View | |
| 2895 | CVE-2008-3001 | The Aggregation module 5.x before 5.x-4.4 for Drupal allows remote attackers to upload files with arbitrary extensions, and possibly execute arbitrary code, via a crafted feed that allows upload of files with arbitrary extensions. | 2 | 9.3 | High | 2017-01-03 | 2009-09-09 | View |
Page 2227 of 17672, showing 5 records out of 88360 total, starting on record 11131, ending on 11135