NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12601  CVE-2010-1067  E-membres 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/bdEMembres.mdb.    Medium  2017-01-18  2010-03-24  View
12602  CVE-2010-1068  Multiple cross-site scripting (XSS) vulnerabilities in surgeftpmgr.cgi in NetWin SurgeFTP 2.3a6 allow remote attackers to inject arbitrary web script or HTML via the (1) domainid or (2) classid parameter in a class action.    4.3  Medium  2017-01-18  2010-03-24  View
12603  CVE-2010-1069  SQL injection vulnerability in games/game.php in ProArcadeScript allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-18  2010-03-24  View
12604  CVE-2010-1070  SQL injection vulnerability in index.php in ImagoScripts Deviant Art Clone allows remote attackers to execute arbitrary SQL commands via the seid parameter in a forums viewcat action.    7.5  High  2017-01-18  2010-03-24  View
12605  CVE-2010-1071  SQL injection vulnerability in profil.php in phpMDJ 1.0.3 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-18  2010-03-24  View

Page 2521 of 17672, showing 5 records out of 88360 total, starting on record 12601, ending on 12605

Actions