NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
48722  CVE-2009-1446  Unrestricted file upload vulnerability in upload.php in Elkagroup Image Gallery 1.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in gallery/pictures/. NOTE: some of these details are obtained from third party information.    6.5  Medium  2017-01-07  2009-05-14  View
5207  CVE-2008-5434  Multiple SQL injection vulnerabilities in PunBB 1.3 and 1.3.1 allow remote authenticated administrators to execute arbitrary SQL commands via the (1) order_by or (2) direction parameter to admin/users.php, or (3) configuration options to admin/settings.php.    6.5  Medium  2017-01-03  2009-05-14  View
2915  CVE-2008-3025  SQL injection vulnerability in ad.php in plx Ad Trader 3.2 allows remote attackers to execute arbitrary SQL commands via the adid parameter in a redir action.    7.5  High  2017-01-03  2009-05-14  View
2920  CVE-2008-3030  SQL injection vulnerability in default.asp in EfesTECH Shop 2.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in an urunler action.    7.5  High  2017-01-03  2009-05-14  View
2921  CVE-2008-3031  Directory traversal vulnerability in index.php in Simple PHP Agenda 2.2.4 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.    7.5  High  2017-01-03  2009-05-14  View

Page 3060 of 17672, showing 5 records out of 88360 total, starting on record 15296, ending on 15300

Actions