NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15436 | CVE-2010-4151 | SQL injection vulnerability in misc.php in DeluxeBB 1.3, and possibly earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the xthedateformat parameter in a register action, a different vector than CVE-2005-2989, CVE-2006-2503, and CVE-2009-1033. | 2 | 6.8 | Medium | 2017-01-18 | 2010-11-04 | View | |
| 15437 | CVE-2010-4152 | SQL injection vulnerability in catalog/index.shtml in 4site CMS 2.6, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: the i and th vectors are already covered by CVE-2009-0646. | 2 | 7.5 | High | 2017-01-18 | 2010-11-04 | View | |
| 15438 | CVE-2010-4153 | Directory traversal vulnerability in CrossFTP Pro 1.65a, and probably earlier, allows remote FTP servers to write arbitrary files via a ".." (dot dot backslash) in a filename. | 2 | 9.3 | High | 2017-01-18 | 2010-11-05 | View | |
| 15439 | CVE-2010-4154 | Directory traversal vulnerability in Rhino Software, Inc. FTP Voyager 15.2.0.11, and possibly earlier, allows remote FTP servers to write arbitrary files via a ".." (dot dot backslash) in a filename. | 2 | 9.3 | High | 2017-01-18 | 2010-11-04 | View | |
| 15440 | CVE-2010-4155 | Multiple cross-site scripting (XSS) vulnerabilities in eXV2 CMS 2.10 allow remote attackers to inject arbitrary web script or HTML via the (1) rssfeedURL parameter to manual/caferss/example.php and the sumb parameter to (2) modules/news/archive.php, (3) modules/news/topics.php, and (4) modules/contact/index.php, different vectors than CVE-2007-1965. | 2 | 4.3 | Medium | 2017-01-18 | 2010-11-04 | View |
Page 3088 of 17672, showing 5 records out of 88360 total, starting on record 15436, ending on 15440