NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12663  CVE-2010-1129  The safe_mode implementation in PHP before 5.2.13 does not properly handle directory pathnames that lack a trailing / (slash) character, which allows context-dependent attackers to bypass intended access restrictions via vectors related to use of the tempnam function.    7.5  High  2017-01-18  2010-08-31  View
78455  CVE-2001-1020  edit_image.php in Vibechild Directory Manager before 0.91 allows remote attackers to execute arbitrary commands via shell metacharacters in the userfile_name parameter, which is sent unfiltered to the PHP passthru function.    7.5  High  2017-01-05  2008-09-05  View
13175  CVE-2010-1656  SQL injection vulnerability in the Airiny ABC (com_abc) component 1.1.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the sectionid parameter in an abc action to index.php.    7.5  High  2017-01-18  2010-05-03  View
79991  CVE-2002-0995  login.php for PHPAuction allows remote attackers to gain privileges via a direct call to login.php with the action parameter set to "insert," which adds the provided username to the adminUsers table.    7.5  High  2017-01-05  2008-09-05  View
81015  CVE-2002-2064  isadmin.php in PhpWebGallery 1.0 allows remote attackers to gain administrative access via by setting the photo_login cookie to pseudo.    7.5  High  2017-01-05  2008-09-05  View

Page 3310 of 17672, showing 5 records out of 88360 total, starting on record 16546, ending on 16550

Actions