NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 69458 | CVE-2005-3820 | Multiple directory traversal vulnerabilities in index.php in vTiger CRM 4.2 and earlier allow remote attackers to read or include arbitrary files, an ultimately execute arbitrary PHP code, via .. (dot dot) and null byte ("%00") sequences in the (1) module parameter and (2) action parameter in the Leads module, as also demonstrated by injecting PHP code into log messages and accessing the log file. | 2 | 6.4 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 4178 | CVE-2008-4350 | SQL injection vulnerability in main.php in vbLOGIX Tutorial Script 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 69714 | CVE-2005-4076 | Buffer overflow in Appfluent Technology Database IDS 2.0 allows local users to execute arbitrary code via a long APPFLUENT_HOME environment variable. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 4434 | CVE-2008-4620 | SQL injection vulnerability in Meeting Room Booking System (MRBS) before 1.4 allows remote attackers to execute arbitrary SQL commands via the area parameter to (1) month.php, and possibly (2) day.php and (3) week.php. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 69970 | CVE-2005-4372 | Cross-site scripting (XSS) vulnerability in account.html in Adaptive Website Framework (AWF) 2.10 and earlier allows remote attackers to inject arbitrary web script or HTML via the page parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 2258 of 17672, showing 5 records out of 88360 total, starting on record 11286, ending on 11290