NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11456  CVE-2011-5196  Cross-site request forgery (CSRF) vulnerability in index/manager/fileUpload in Public Knowledge Project Open Journal Systems 2.3.6 and earlier allows remote attackers to hijack the authentication of administrators for requests that upload PHP files.    6.8  Medium  2017-01-07  2016-09-19  View
11457  CVE-2011-5197  Cross-site request forgery (CSRF) vulnerability in index/manager/fileUpload in Public Knowledge Project Open Harvester Systems 2.3.1 and earlier allows remote attackers to hijack the authentication of administrators for requests that upload PHP files.    6.8  Medium  2017-01-07  2016-09-19  View
11458  CVE-2011-5198  SQL injection vulnerability in search.php in Neturf eCommerce Shopping Cart allows remote attackers to execute arbitrary SQL commands via the SearchFor parameter. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-07  2012-10-15  View
11459  CVE-2011-5199  Cross-site scripting (XSS) vulnerability in sign.php in tinyguestbook allows remote attackers to inject arbitrary web script or HTML via the msg parameter.    4.3  Medium  2017-01-07  2012-09-24  View
11460  CVE-2011-5200  Multiple SQL injection vulnerabilities in DeDeCMS, possibly 5.6, allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) list.php, (2) members.php, or (3) book.php.    7.5  High  2017-01-07  2012-10-15  View

Page 2292 of 17672, showing 5 records out of 88360 total, starting on record 11456, ending on 11460

Actions