NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 81270 | CVE-2002-2319 | Static code injection vulnerability in users.php in MySimpleNews allows remote attackers to inject arbitrary PHP code and HTML via the (1) LOGIN, (2) DATA, and (3) MESS parameters, which are inserted into news.php3. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
| 16246 | CVE-2010-5011 | SQL injection vulnerability in schoolmv2/html/studentmain.php in SchoolMation 2.3 allows remote attackers to execute arbitrary SQL commands via the session parameter. | 2 | 7.5 | High | 2017-01-18 | 2012-02-13 | View | |
| 86134 | CVE-2017-8923 | The zend_string_extend function in Zend/zend_string.h in PHP through 7.1.5 does not prevent changes to string objects that result in a negative length, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact by leveraging a script's use of .= with a long string. | 2 | 7.5 | High | 2017-05-27 | 2017-05-24 | View | |
| 22134 | CVE-2016-8580 | PHP object injection vulnerabilities exist in multiple widget files in AlienVault OSSIM and USM before 5.3.2. These vulnerabilities allow arbitrary PHP code execution via magic methods in included classes. | 2 | 7.5 | High | 2017-01-19 | 2016-11-28 | View | |
| 22646 | CVE-2015-0119 | FastBack Mount in IBM Tivoli Storage Manager FastBack 6.1.x before 6.1.11.1 allows remote attackers to execute arbitrary code by connecting to the Mount port. | 2 | 7.5 | High | 2017-01-19 | 2015-04-06 | View |
Page 3299 of 17672, showing 5 records out of 88360 total, starting on record 16491, ending on 16495