NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
71941 | CVE-2004-1562 | SQL injection vulnerability in redir_url.php in w-Agora 4.1.6a allows remote attackers to execute arbitrary SQL commands via the key parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
6661 | CVE-2008-6930 | Unrestricted file upload vulnerability in PHPStore Real Estate allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as a logo, then accessing it via a direct request to the file in realty/re_images/. | 2 | 6.5 | Medium | 2017-01-03 | 2009-08-19 | View | |
72197 | CVE-2004-1819 | 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to obtain sensitive information via a direct request to displaycategory.php, which reveals the path in an error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6917 | CVE-2008-7186 | Coppermine Photo Gallery (CPG) 1.4.14 does not restrict access to update.php, which allows remote attackers to obtain sensitive information such as the database table prefix via a direct request. NOTE: this might be leveraged for attacks against CVE-2008-0504. | 2 | 5 | Medium | 2017-01-03 | 2009-09-10 | View | |
72453 | CVE-2004-2076 | Cross-site scripting (XSS) vulnerability in search.php for Jelsoft vBulletin 3.0.0 RC4 allows remote attackers to inject arbitrary web script or HTML via the query parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 350 of 17672, showing 5 records out of 88360 total, starting on record 1746, ending on 1750