NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 16071 | CVE-2010-4836 | Cross-site scripting (XSS) vulnerability in register.html in PHPShop 2.1 EE and earlier allows remote attackers to inject arbitrary web script or HTML via the name_new parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2012-02-13 | View | |
| 16072 | CVE-2010-4837 | Cross-site scripting (XSS) vulnerability in the JSupport (com_jsupport) component 1.5.6 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the subject parameter (title field) in a saveTicket action to index2.php. NOTE: some of these details are obtained from third party information. | 2 | 4.3 | Medium | 2017-01-18 | 2012-02-13 | View | |
| 16073 | CVE-2010-4838 | SQL injection vulnerability in the JSupport (com_jsupport) component 1.5.6 for Joomla! allows remote authenticated users, with Public Back-end permissions, to execute arbitrary SQL commands via the alpha parameter in a (1) listTickets or (2) listFaqs action to administrator/index.php. | 2 | 6 | Medium | 2017-01-18 | 2012-02-13 | View | |
| 16074 | CVE-2010-4839 | SQL injection vulnerability in the Event Registration plugin 5.32 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the event_id parameter in a register action. | 2 | 7.5 | High | 2017-01-18 | 2011-09-14 | View | |
| 16075 | CVE-2010-4840 | Multiple buffer overflows in the Syslog server in ManageEngine EventLog Analyzer 6.1 allow remote attackers to cause a denial of service (SysEvttCol.exe process crash) or possibly execute arbitrary code via a long Syslog PRI message header to UDP port (1) 513 or (2) 514. | 2 | 7.5 | High | 2017-01-18 | 2012-05-21 | View |
Page 3215 of 17672, showing 5 records out of 88360 total, starting on record 16071, ending on 16075