NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3460 | CVE-2008-3590 | Multiple SQL injection vulnerabilities in admin/login.asp in E. Z. Poll 2 allow remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
69764 | CVE-2005-4156 | Unspecified vulnerability in Mambo 4.5 (1.0.0) through 4.5 (1.0.9), with magic_quotes_gpc disabled, allows remote attackers to read arbitrary files and possibly cause a denial of service via a query string that ends with a NULL character. | 2 | 9.4 | High | 2017-01-03 | 2008-09-05 | View | |
70020 | CVE-2005-4422 | Unrestricted file upload vulnerability in toendaCMS before 0.6.2 Stable allows remote authenticated administrators to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in data/images/albums. | 2 | 6.5 | Medium | 2017-01-03 | 2008-09-05 | View | |
70276 | CVE-2005-4687 | PunBB 1.2.9, used alone or with F-ART BLOG:CMS, may trust a client"s IP address as specified in the X-Forwarded-For HTTP header rather than the TCP/IP stack, which allows remote attackers to misrepresent their IP address by sending a modified header. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
72836 | CVE-2004-2459 | Unknown vulnerability in gnubiff 1.2.0 and earlier allows local users to obtain passwords, related to the password table. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View |
Page 880 of 17672, showing 5 records out of 88360 total, starting on record 4396, ending on 4400