NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3077 | CVE-2008-3194 | Multiple directory traversal vulnerabilities in data/inc/themes/predefined_variables.php in pluck 4.5.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) langpref, (2) file, (3) blogpost, or (4) cat parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
68613 | CVE-2005-2949 | pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other users by using certain applications that allow the username to be changed during authentication, such as /bin/login. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
3333 | CVE-2008-3452 | SQL injection vulnerability in the Calendar module in eNdonesia 8.4 allows remote attackers to execute arbitrary SQL commands via the loc_id parameter in a list_events action to mod.php. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-19 | View | |
3589 | CVE-2008-3724 | SQL injection vulnerability in index.php in Papoo before 3.7.2 allows remote attackers to execute arbitrary SQL commands via the suchanzahl parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-10 | View | |
69125 | CVE-2005-3464 | Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46 has unknown impact and attack vectors, as identified by Oracle Vuln# PSE04. | 2 | 10 | High | 2017-01-03 | 2012-10-22 | View |
Page 305 of 17672, showing 5 records out of 88360 total, starting on record 1521, ending on 1525