NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46187  CVE-2012-4927  SQL injection vulnerability in Limesurvey (a.k.a PHPSurveyor) before 1.91+ Build 120224 and earlier allows remote attackers to execute arbitrary SQL commands via the fieldnames parameter to index.php.    7.5  High  2017-01-19  2012-09-17  View
49003  CVE-2009-1734  SQL injection vulnerability in listing_video.php in VidSharePro allows remote attackers to execute arbitrary SQL commands via the catid parameter.    7.5  High  2017-01-07  2009-06-09  View
49515  CVE-2009-2263  Directory traversal vulnerability in index.php in Awesome PHP Mega File Manager 1.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.    7.5  High  2017-01-07  2009-06-30  View
50539  CVE-2009-3335  SQL injection vulnerability in the TurtuShout component 0.11 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Name field.    7.5  High  2017-01-07  2009-09-24  View
50795  CVE-2009-3596  JoxTechnology Ajox Poll does not properly restrict access to admin/managepoll.php, which allows remote attackers to bypass authentication and gain administrative access via a direct request.    7.5  High  2017-01-07  2009-10-09  View

Page 3172 of 17672, showing 5 records out of 88360 total, starting on record 15856, ending on 15860

Actions