NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 16036 | CVE-2010-4798 | Directory traversal vulnerability in index.php in OrangeHRM 2.6.0.1 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the uri parameter. | 2 | 6.8 | Medium | 2017-01-18 | 2012-05-01 | View | |
| 16037 | CVE-2010-4799 | Multiple SQL injection vulnerabilities in Chipmunk Pwngame 1.0, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters to authenticate.php and the (3) ID parameter to pwn.php. NOTE: some of these details are obtained from third party information. | 2 | 6.8 | Medium | 2017-01-18 | 2011-09-21 | View | |
| 16038 | CVE-2010-4800 | SQL injection vulnerability in doadd.php in BaconMap 1.0 allows remote attackers to execute arbitrary SQL commands via the type parameter. | 2 | 7.5 | High | 2017-01-18 | 2011-09-21 | View | |
| 16039 | CVE-2010-4801 | Directory traversal vulnerability in admin/updatelist.php in BaconMap 1.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the filepath parameter. | 2 | 6 | Medium | 2017-01-18 | 2011-09-21 | View | |
| 16040 | CVE-2010-4802 | Commands.pm in Mojolicious before 0.999928 does not properly perform CGI environment detection, which has unspecified impact and remote attack vectors. | 2 | 10 | High | 2017-01-18 | 2011-08-26 | View |
Page 3208 of 17672, showing 5 records out of 88360 total, starting on record 16036, ending on 16040