NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
16166  CVE-2010-4931  ** DISPUTED ** Directory traversal vulnerability in maincore.php in PHP-Fusion allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the folder_level parameter. NOTE: this issue has been disputed by a reliable third party.    10  High  2017-01-18  2012-05-14  View
16167  CVE-2010-4932  Cross-site scripting (XSS) vulnerability in search.php in Entrans before 0.3.3 allows remote attackers to inject arbitrary web script or HTML via the query parameter.    4.3  Medium  2017-01-18  2012-05-14  View
16168  CVE-2010-4933  SQL injection vulnerability in filemgmt/singlefile.php in Geeklog 1.3.8 allows remote attackers to execute arbitrary SQL commands via the lid parameter.    7.5  High  2017-01-18  2012-02-13  View
16169  CVE-2010-4934  SQL injection vulnerability in video.php in Get Tube 4.51 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-18  2012-05-14  View
16170  CVE-2010-4935  SQL injection vulnerability in poll.php in Entrans 0.3.2 and earlier allows remote attackers to execute arbitrary SQL commands via the sid parameter.    7.5  High  2017-01-18  2012-05-14  View

Page 3234 of 17672, showing 5 records out of 88360 total, starting on record 16166, ending on 16170

Actions