NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 12663 | CVE-2010-1129 | The safe_mode implementation in PHP before 5.2.13 does not properly handle directory pathnames that lack a trailing / (slash) character, which allows context-dependent attackers to bypass intended access restrictions via vectors related to use of the tempnam function. | 2 | 7.5 | High | 2017-01-18 | 2010-08-31 | View | |
| 78455 | CVE-2001-1020 | edit_image.php in Vibechild Directory Manager before 0.91 allows remote attackers to execute arbitrary commands via shell metacharacters in the userfile_name parameter, which is sent unfiltered to the PHP passthru function. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
| 13175 | CVE-2010-1656 | SQL injection vulnerability in the Airiny ABC (com_abc) component 1.1.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the sectionid parameter in an abc action to index.php. | 2 | 7.5 | High | 2017-01-18 | 2010-05-03 | View | |
| 79991 | CVE-2002-0995 | login.php for PHPAuction allows remote attackers to gain privileges via a direct call to login.php with the action parameter set to "insert," which adds the provided username to the adminUsers table. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
| 81015 | CVE-2002-2064 | isadmin.php in PhpWebGallery 1.0 allows remote attackers to gain administrative access via by setting the photo_login cookie to pseudo. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View |
Page 3310 of 17672, showing 5 records out of 88360 total, starting on record 16546, ending on 16550