NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
49967  CVE-2009-2734  SQL injection vulnerability in the get_employee function in classweekreport.inc in Achievo before 1.4.0 allows remote attackers to execute arbitrary SQL commands via the userid parameter (aka user_id variable) to dispatch.php.    7.5  High  2017-01-07  2009-10-16  View
51503  CVE-2009-4380  Multiple SQL injection vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to execute arbitrary SQL commands via unspecified vectors, a different issue than CVE-2008-2925.    7.5  High  2017-01-07  2009-12-23  View
52783  CVE-2007-0559  PHP remote file inclusion vulnerability in config.php in RPW 1.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the sql_language parameter.    7.5  High  2017-01-07  2011-03-07  View
56879  CVE-2007-4762  Multiple SQL injection vulnerabilities in embadmin/login.asp in E-SMARTCART 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass fields, different vectors than CVE-2007-0092.    7.5  High  2017-01-07  2009-09-16  View
59951  CVE-2006-1237  Multiple SQL injection vulnerabilities in DSNewsletter 1.0, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the email parameter to (1) include/sub.php, (2) include/confirm.php, or (3) include/unconfirm.php.    7.5  High  2016-12-20  2011-03-07  View

Page 2473 of 17672, showing 5 records out of 88360 total, starting on record 12361, ending on 12365

Actions