NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
781  CVE-2008-0810  SQL injection vulnerability in the com_scheduling module for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2008-09-05  View
66317  CVE-2005-0565  The Announce module in phpWebSite 0.10.0 and earlier allows remote attackers to execute arbitrary PHP code by setting the Image field to reference a PHP file whose name contains a .gif.php extension.    7.5  High  2017-07-18  2017-07-10  View
1293  CVE-2008-1334  cgi/b on the BT Home Hub router allows remote attackers to bypass authentication, and read or modify administrative settings or make arbitrary VoIP telephone calls, by placing a character at the end of the PATH_INFO, as demonstrated by (1) %5C (encoded backslash), (2) "%" (percent), and (3) "~" (tilde). NOTE: the "/" (slash) vector is already covered by CVE-2007-5383.    7.5  High  2017-01-03  2008-10-11  View
2317  CVE-2008-2401  The Admin Server in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to append to arbitrary new or existing files via the first argument to a certain file that is included by multiple unspecified ASP applications.    7.5  High  2017-01-03  2011-03-07  View
67853  CVE-2005-2149  config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session information to gain privileges and disable the use of addslashes to conduct SQL injection attacks.    10  High  2017-01-03  2011-03-07  View

Page 696 of 17672, showing 5 records out of 88360 total, starting on record 3476, ending on 3480

Actions