NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57693 | CVE-2007-5630 | SQL injection vulnerability in tnews.php in BBsProcesS BBPortalS 1.5.10 through 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a tnews action. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
58461 | CVE-2007-6466 | Multiple SQL injection vulnerabilities in index.php in FreeWebshop 2.2.1 allow remote attackers to execute arbitrary SQL commands via (1) the prod parameter in a details action, (2) the cat parameter in a browse list action, or (3) the group parameter in a categories action. NOTE: it was later reported that MOG - Web Shop (MOG-WebShop), a product based on the same code, is also affected. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
58973 | CVE-2006-0233 | Cross-site scripting (XSS) vulnerability in functions.php in microBlog 2.0 RC-10 allows remote attackers to inject arbitrary web script and HTML via a javascript: URI in a [url] BBcode tag. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
61533 | CVE-2006-2848 | links.asp in aspWebLinks 2.0 allows remote attackers to change the administrative password, possibly via a direct request with a modified txtAdministrativePassword field. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
62045 | CVE-2006-3367 | Mp3 JudeBox Server (Mp3NetBox) Beta 1 stores config.inc under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information, including the database configuration. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 595 of 17672, showing 5 records out of 88360 total, starting on record 2971, ending on 2975