NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69458  CVE-2005-3820  Multiple directory traversal vulnerabilities in index.php in vTiger CRM 4.2 and earlier allow remote attackers to read or include arbitrary files, an ultimately execute arbitrary PHP code, via .. (dot dot) and null byte ("%00") sequences in the (1) module parameter and (2) action parameter in the Leads module, as also demonstrated by injecting PHP code into log messages and accessing the log file.    6.4  Medium  2017-01-03  2016-10-17  View
4178  CVE-2008-4350  SQL injection vulnerability in main.php in vbLOGIX Tutorial Script 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.    7.5  High  2017-01-03  2011-03-07  View
69714  CVE-2005-4076  Buffer overflow in Appfluent Technology Database IDS 2.0 allows local users to execute arbitrary code via a long APPFLUENT_HOME environment variable.    4.6  Medium  2017-01-03  2008-09-05  View
4434  CVE-2008-4620  SQL injection vulnerability in Meeting Room Booking System (MRBS) before 1.4 allows remote attackers to execute arbitrary SQL commands via the area parameter to (1) month.php, and possibly (2) day.php and (3) week.php.    7.5  High  2017-01-03  2011-03-07  View
69970  CVE-2005-4372  Cross-site scripting (XSS) vulnerability in account.html in Adaptive Website Framework (AWF) 2.10 and earlier allows remote attackers to inject arbitrary web script or HTML via the page parameter.    4.3  Medium  2017-01-03  2011-03-07  View

Page 2258 of 17672, showing 5 records out of 88360 total, starting on record 11286, ending on 11290

Actions