NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2666 | CVE-2008-2772 | The Magic Tabs module 5.x before 5.x-1.1 for Drupal allows remote attackers to execute arbitrary PHP code via unspecified URL arguments, possibly related to a missing "whitelist of callbacks." | 2 | 7.5 | High | 2017-01-03 | 2009-04-08 | View | |
| 3178 | CVE-2008-3297 | Multiple SQL injection vulnerabilities in SocialEngine (SE) before 2.83 allow remote attackers to execute arbitrary SQL commands via (1) an se_user cookie to include/class_user.php or (2) an se_admin cookie to include/class_admin.php. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 3434 | CVE-2008-3564 | Multiple directory traversal vulnerabilities in index.php in Dayfox Blog 4 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) p, (2) cat, and (3) archive parameters. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL. | 2 | 7.5 | High | 2017-01-03 | 2009-03-18 | View | |
| 3946 | CVE-2008-4088 | SQL injection vulnerability in print.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to execute arbitrary SQL commands via the sid parameter. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
| 69482 | CVE-2005-3844 | SQL injection vulnerability in phpWordPress PHP News and Article Manager 3.0 allows remote attackers to execute arbitrary SQL commands via the (1) poll and (2) category parameters to index.php, and (3) the ctg parameter in an archive action. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View |
Page 3151 of 17672, showing 5 records out of 88360 total, starting on record 15751, ending on 15755