NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46910  CVE-2012-5894  SQL injection vulnerability in hava_post.php in Havalite CMS 1.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the postId parameter.    7.5  High  2017-01-19  2012-11-19  View
51774  CVE-2009-4657  The administrator package for Xerver 4.32 does not require authentication, which allows remote attackers to alter application settings by connecting to the application on port 32123, as demonstrated by setting the action option to wizardStep1.    7.5  High  2017-01-07  2010-03-04  View
52286  CVE-2007-0053  SQL injection vulnerability in detail.asp in ASP SiteWare autoDealer 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the iPro parameter.    7.5  High  2017-01-07  2011-03-07  View
52542  CVE-2007-0314  Multiple PHP remote file inclusion vulnerabilities in Article System 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the INCLUDE_DIR parameter to (1) forms.php, (2) issue_edit.php, (3) client.php, and (4) classes.php.    7.5  High  2017-01-07  2011-03-07  View
52798  CVE-2007-0574  SQL injection vulnerability in rss/show_webfeed.php in SpoonLabs Vivvo Article Management CMS (aka phpWordPress) 3.40 allows remote attackers to execute arbitrary SQL commands via the wcHeadlines parameter, a different vector than CVE-2006-4715. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-07  2008-11-13  View

Page 2643 of 17672, showing 5 records out of 88360 total, starting on record 13211, ending on 13215

Actions