CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1 (more results available)
Echo Mirage 3.1 Stack Buffer Overflow via Rules Action Field
Snes9K 0.0.9z Buffer Overflow SEH via Netplay Socket
OpenBiz Cubi Lite 3.0.8 SQL Injection via username Parameter
phpFileManager 1.7.8 Local File Inclusion via index.php
SimplePress CMS 1.0.7 SQL Injection via p and s Parameters
202CMS v10 beta SQL Injection via register.php
202CMS v10 beta SQL Injection via log_user Parameter
Placeto CMS Alpha rv.4 SQL Injection via page Parameter
GPS Tracking System 2.12 SQL Injection via username Parameter
Easyndexer 1.0 Cross-Site Request Forgery via createuser.php
Data Center Audit 2.6.2 SQL Injection via username Parameter
Easyndexer 1.0 Arbitrary File Download via showtif.php
Data Center Audit 2.6.2 Cross-Site Request Forgery via dca_resetpw.php
Meneame English Pligg 5.8 SQL Injection via search Parameter
sox: OOB read in function read_samples in xa.c:219 causing denial of service
Cross-site scripting (XSS) vulnerability in WOW Raid Manager (WRM) before 3.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified…
Buffer overflow in Uploadlist in eMule X-Ray before 1.4 has unknown impact and remote attack vectors.
Admin.php in Web Slider 0.6 allows remote attackers to bypass authentication and gain privileges by setting the admin cookie to 1.
Directory traversal vulnerability in phpMyClub 0.0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page_couran…
Creammonkey 0.9 through 1.1 and GreaseKit 1.2 through 1.3 does not properly prevent access to dangerous functions, which allows remote attackers to read the co…
Cross-site scripting (XSS) vulnerability in PHP Ticket 0.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a help ticket.
Cross-site scripting (XSS) vulnerability in form_header.php in MyMarket 1.71 allows remote attackers to inject arbitrary web script or HTML via the noticemsg p…
security flaw
SQL injection vulnerability in search.asp in JGBBS 3.0 Beta 1 and earlier allows remote attackers to execute arbitrary SQL commands via the title parameter, a…
security flaw
Showing 1 to 25 CVEs · page 1 (more available)