NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 13616 | CVE-2010-2129 | Directory traversal vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.1 and 1.0.3 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php. NOTE: some of these details are obtained from third party information. | 2 | 6.8 | Medium | 2017-01-18 | 2010-06-02 | View | |
| 13617 | CVE-2010-2130 | Cross-site scripting (XSS) vulnerability in wflogin.jsp in Aris Global ARISg 5.0 allows remote attackers to inject arbitrary web script or HTML via the errmsg parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2010-06-03 | View | |
| 13618 | CVE-2010-2131 | SQL injection vulnerability in the Calendar Base (cal) extension before 1.3.2 for TYPO3 allows remote attackers to execute arbitrary SQL commands via iCalendar data. | 2 | 7.5 | High | 2017-01-18 | 2013-08-22 | View | |
| 13619 | CVE-2010-2132 | Multiple PHP remote file inclusion vulnerabilities in Open Education System (OES) 0.1 beta allow remote attackers to execute arbitrary PHP code via a URL in the CONF_INCLUDE_PATH parameter to (1) forum/admin.php and (2) plotgraph/index.php in admin/modules/modules/, and (3) admin_user/mod_admuser.php and (4) ogroup/mod_group.php in admin/modules/user_account/, different vectors than CVE-2007-1446. | 2 | 7.5 | High | 2017-01-18 | 2010-06-03 | View | |
| 13620 | CVE-2010-2133 | SQL injection vulnerability in contact.php in My Little Forum allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2007-2942. | 2 | 7.5 | High | 2017-01-18 | 2010-06-03 | View |
Page 2724 of 17672, showing 5 records out of 88360 total, starting on record 13616, ending on 13620