NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6271  CVE-2008-6540  DotNetNuke before 4.8.2, during installation or upgrade, does not warn the administrator when the default (1) ValidationKey and (2) DecryptionKey values cannot be modified in the web.config file, which allows remote attackers to bypass intended access restrictions by using the default keys.    5.1  Medium  2017-01-03  2009-08-19  View
6527  CVE-2008-6796  SQL injection vulnerability in manager/login.php in Pre Projects Pre Real Estate Listings allows remote attackers to execute arbitrary SQL commands via the username1 parameter (aka the Admin field or Username field).    7.5  High  2017-01-03  2009-05-07  View
6783  CVE-2008-7052  Unrestricted file upload vulnerability in profile.php in Pre Projects Pre Real Estate Listings allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a profile logo, then accessing it via a direct request to the file in re_images/.    6.5  Medium  2017-01-03  2009-08-24  View
73343  CVE-2003-0205  gkrellm-newsticker gkrellm plugin before 0.3-3.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the ticker title of a URI.    7.5  High  2017-01-03  2016-10-17  View
73855  CVE-2003-0750  secure.php in PY-Membres 4.2 and earlier allows remote attackers to bypass authentication by setting the adminpy parameter.    7.5  High  2017-01-03  2008-09-10  View

Page 2677 of 17672, showing 5 records out of 88360 total, starting on record 13381, ending on 13385

Actions