NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
13635  CVE-2010-2148  SQL injection vulnerability in the My Car (com_mycar) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the pagina parameter to index.php.    7.5  High  2017-01-18  2010-06-07  View
79171  CVE-2002-0155  Buffer overflow in Microsoft MSN Chat ActiveX Control, as used in MSN Messenger 4.5 and 4.6, and Exchange Instant Messenger 4.5 and 4.6, allows remote attackers to execute arbitrary code via a long ResDLL parameter in the MSNChat OCX.    7.5  High  2017-01-05  2016-10-17  View
79683  CVE-2002-0683  Directory traversal vulnerability in Carello 1.3 allows remote attackers to execute programs on the server via a .. (dot dot) in the VBEXE parameter.    7.5  High  2017-01-05  2016-10-17  View
81987  CVE-2016-10176  The NETGEAR WNR2000v5 router allows an administrator to perform sensitive actions by invoking the apply.cgi URL on the web server of the device. This special URL is handled by the embedded web server (uhttpd) and processed accordingly. The web server also contains another URL, apply_noauth.cgi, that allows an unauthenticated user to perform sensitive actions on the device. This functionality can be exploited to change the router settings (such as the answers to the password-recovery questions) and achieve remote code execution.    7.5  High  2017-02-28  2017-02-24  View
21827  CVE-2016-7405  The qstr method in the PDO driver in the ADOdb Library for PHP before 5.x before 5.20.7 might allow remote attackers to conduct SQL injection attacks via vectors related to incorrect quoting.    7.5  High  2017-01-19  2016-10-04  View

Page 2696 of 17672, showing 5 records out of 88360 total, starting on record 13476, ending on 13480

Actions