CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2018-6368 CRITICAL

SQL Injection exists in the JomEstate PRO through 3.7 component for Joomla! via the id parameter in a task=detailed action.

CVSS 9.8 EPSS 2.65% Feb 17, 2018
CVE-2008-6250 MEDIUM

SQL injection vulnerability in Comdev Web Blogger 4.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the arcmonth parameter to a b…

CVSS 6.8 EPSS 1.08% Feb 23, 2009
CVE-2008-1872 HIGH

SQL injection vulnerability in home.news.php in Comdev News Publisher 4.1.2 allows remote attackers to execute arbitrary SQL commands via the arcmonth paramete…

CVSS 7.5 EPSS 0.97% Apr 17, 2008
CVE-2007-3084 HIGH

PHP remote file inclusion vulnerability in sampleblogger.php in Comdev Web Blogger 4.1 allows remote attackers to execute arbitrary PHP code via a URL in the p…

CVSS 7.5 EPSS 1.35% Jun 6, 2007
CVE-2007-3081 HIGH

PHP remote file inclusion vulnerability in sampleecommerce.php in Comdev eCommerce 4.1 allows remote attackers to execute arbitrary PHP code via a URL in the p…

CVSS 7.5 EPSS 1.36% Jun 6, 2007
CVE-2007-2422 CRITICAL

Multiple PHP remote file inclusion vulnerabilities in Modules Builder (modbuild) 4.1 for Comdev One Admin allow remote attackers to execute arbitrary PHP code…

CVSS 9.8 EPSS 2.43% May 2, 2007
CVE-2006-6045 MEDIUM

Multiple PHP remote file inclusion vulnerabilities in Comdev One Admin Pro 4.1 allow remote attackers to execute arbitrary PHP code via a URL in the path[skin]…

CVSS 6.8 EPSS 2.79% Nov 22, 2006
CVE-2006-5441 HIGH

PHP remote file inclusion vulnerability in adminfoot.php in Comdev Web Blogger 4.1, when register_globals is enabled, allows remote attackers to execute arbitr…

CVSS 7.5 EPSS 1.48% Oct 20, 2006
CVE-2006-5440 HIGH

PHP remote file inclusion vulnerability in adminfoot.php in Comdev Form Designer 4.1, when register_globals is enabled, allows remote attackers to execute arbi…

CVSS 7.5 EPSS 1.48% Oct 20, 2006
CVE-2006-5439 HIGH

PHP remote file inclusion vulnerability in adminfoot.php in Comdev Misc Tools 4.1, when register_globals is enabled, allows remote attackers to execute arbitra…

CVSS 7.5 EPSS 1.50% Oct 20, 2006
CVE-2006-5438 HIGH

PHP remote file inclusion vulnerability in adminfoot.php in Comdev Forum 4.1, when register_globals is enabled, allows remote attackers to execute arbitrary PH…

CVSS 7.5 EPSS 1.48% Oct 20, 2006
CVE-2006-5101 HIGH

PHP remote file inclusion vulnerability in include.php in Comdev CSV Importer 3.1 and possibly 4.1, as used in (1) Comdev Contact Form 3.1, (2) Comdev Customer…

CVSS 7.5 EPSS 6.14% Oct 2, 2006
CVE-2005-3825 HIGH

SQL injection vulnerability in index.php in Comdev Vote Caster 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the campaign_id pa…

CVSS 7.5 EPSS 1.16% Nov 26, 2005
CVE-2005-2544 MEDIUM

PHP remote file inclusion vulnerability in config.php in Comdev eCommerce 3.0 allows remote attackers to execute arbitrary PHP code via the path[docroot] param…

CVSS 5.0 EPSS 1.45% Aug 10, 2005
CVE-2005-2543 MEDIUM

Directory traversal vulnerability in wce.download.php in Comdev eCommerce 3.0 allows remote attackers to download arbitrary files via a .. (dot dot) in the dow…

CVSS 5.0 EPSS 5.99% Aug 10, 2005
CVE-2005-2138 MEDIUM

Cross-site scripting (XSS) vulnerability in index.php in Comdev eCommerce 3.0 and 3.1 allows remote attackers to inject arbitrary web script or HTML via Javasc…

CVSS 4.3 EPSS 0.99% Jul 5, 2005

Showing 1 to 16 CVEs · page 1