NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
14456  CVE-2010-3026  Cross-site request forgery (CSRF) vulnerability in application/modules/admin/controllers/users.php in Tomaz Muraus Open Blog 1.2.1, and possibly earlier, allows remote attackers to hijack the authentication of administrators for requests to admin/users/edit that grant administrative privileges.    4.3  Medium  2017-01-18  2010-08-17  View
14457  CVE-2010-3027  SQL injection vulnerability in index.php in Tycoon Baseball Script 1.0.9 allows remote attackers to execute arbitrary SQL commands via the game_id parameter in a game_player action.    7.5  High  2017-01-18  2010-08-17  View
14458  CVE-2010-3028  The Aardvertiser component before 2.2.1 for Joomla! uses insecure permissions (777) in unspecified folders, which allows local users to modify, create, or delete certain files.    3.6  Low  2017-01-18  2010-08-17  View
14459  CVE-2010-3029  SQL injection vulnerability in statistics.php in PHPKick 0.8 allows remote attackers to execute arbitrary SQL commands via the gameday parameter in an overview action.    7.5  High  2017-01-18  2010-08-17  View
14460  CVE-2010-3030  Cross-site request forgery (CSRF) vulnerability in Tomaz Muraus Open Blog 1.2.1, and possibly earlier, allows remote attackers to hijack the authentication of administrators for requests that change the administrative password. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    6.8  Medium  2017-01-18  2010-08-18  View

Page 2892 of 17672, showing 5 records out of 88360 total, starting on record 14456, ending on 14460

Actions