NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54849  CVE-2007-2685  Multiple SQL injection vulnerabilities in index.php in Jetbox CMS 2.1 allow remote attackers to execute arbitrary SQL commands via the (1) view or (2) login parameter.    7.5  High  2017-01-07  2008-09-05  View
57665  CVE-2007-5600  Incomplete blacklist vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to execute arbitrary PHP code via a (1) UNC share pathname, or a (2) ftps, (3) ssh2.sftp, or (4) ssh2.scp URL, in the page parameter, for which PHP remote file inclusion is blocked only for http, https, and ftp URLs.    6.8  Medium  2017-01-07  2008-09-05  View
58177  CVE-2007-6174  PHPDevShell before 0.7.0 allows remote authenticated users to gain privileges via a crafted request to update a user profile. NOTE: some of these details are obtained from third party information.    8.5  High  2017-01-07  2008-09-05  View
59201  CVE-2006-0463  Cross-site scripting (XSS) vulnerability in IdeoContent Manager allows remote attackers to inject arbitrary web script or HTML via the (1) goto_id parameter to index.php or (2) page parameter to news_full.php.    4.3  Medium  2016-12-20  2008-09-05  View
60737  CVE-2006-2032  Multiple SQL injection vulnerabilities in Core CoreNews 2.0.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) icon_id and (2) userid parameters in preview.php.    6.4  Medium  2016-12-20  2008-09-05  View

Page 414 of 17672, showing 5 records out of 88360 total, starting on record 2066, ending on 2070

Actions