NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 6271 | CVE-2008-6540 | DotNetNuke before 4.8.2, during installation or upgrade, does not warn the administrator when the default (1) ValidationKey and (2) DecryptionKey values cannot be modified in the web.config file, which allows remote attackers to bypass intended access restrictions by using the default keys. | 2 | 5.1 | Medium | 2017-01-03 | 2009-08-19 | View | |
| 6527 | CVE-2008-6796 | SQL injection vulnerability in manager/login.php in Pre Projects Pre Real Estate Listings allows remote attackers to execute arbitrary SQL commands via the username1 parameter (aka the Admin field or Username field). | 2 | 7.5 | High | 2017-01-03 | 2009-05-07 | View | |
| 6783 | CVE-2008-7052 | Unrestricted file upload vulnerability in profile.php in Pre Projects Pre Real Estate Listings allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a profile logo, then accessing it via a direct request to the file in re_images/. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-24 | View | |
| 73343 | CVE-2003-0205 | gkrellm-newsticker gkrellm plugin before 0.3-3.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the ticker title of a URI. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 73855 | CVE-2003-0750 | secure.php in PY-Membres 4.2 and earlier allows remote attackers to bypass authentication by setting the adminpy parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-10 | View |
Page 2677 of 17672, showing 5 records out of 88360 total, starting on record 13381, ending on 13385