NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
13506  CVE-2010-2015  Multiple SQL injection vulnerabilities in LiSK CMS 4.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in a view_inbox action to cp/cp_messages.php or (2) the id parameter to cp/edit_email.php.    6.8  Medium  2017-01-18  2010-05-24  View
13507  CVE-2010-2016  SQL injection vulnerability in details.php in Iceberg CMS allows remote attackers to execute arbitrary SQL commands via the p_id parameter.    7.5  High  2017-01-18  2010-05-24  View
13508  CVE-2010-2017  Cross-site scripting (XSS) vulnerability in hasil-pencarian.html in Lokomedia CMS 1.4.1 and 2.0 allows remote attackers to inject arbitrary web script or HTML via the kata parameter. NOTE: some of these details are obtained from third party information.    4.3  Medium  2017-01-18  2010-05-24  View
13509  CVE-2010-2018  Directory traversal vulnerability in downlot.php in Lokomedia CMS 1.4.1 and 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.    Medium  2017-01-18  2010-05-24  View
13510  CVE-2010-2019  SQL injection vulnerability in downlot.php in Lokomedia CMS 1.4.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the file parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    6.8  Medium  2017-01-18  2010-05-24  View

Page 2702 of 17672, showing 5 records out of 88360 total, starting on record 13506, ending on 13510

Actions