CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2009-4858 MEDIUM

Cross-site scripting (XSS) vulnerability in questiondetail.php in Yahoo Answers Clone allows remote attackers to inject arbitrary web script or HTML via the qu…

CVSS 4.3 EPSS 1.27% May 10, 2010
CVE-2008-6963 HIGH

admin.php in TurnkeyForms Text Link Sales allows remote attackers to bypass authentication and gain administrative privileges via a direct request.

CVSS 7.5 EPSS 2.45% Aug 13, 2009
CVE-2008-6941 HIGH

SQL injection vulnerability in the login functionality in TurnkeyForms Web Hosting Directory allows remote attackers to execute arbitrary SQL commands via the…

CVSS 7.5 EPSS 1.14% Aug 12, 2009
CVE-2008-6940 HIGH

TurnkeyForms Web Hosting Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain a…

CVSS 7.5 EPSS 2.84% Aug 12, 2009
CVE-2008-6939 HIGH

TurnkeyForms Web Hosting Directory allows remote attackers to bypass authentication and (1) gain administrative privileges by setting the adm cookie to 1 or (2…

CVSS 7.5 EPSS 3.12% Aug 12, 2009
CVE-2008-6723 HIGH

TurnkeyForms Entertainment Portal 2.0 allows remote attackers to bypass authentication and gain administrative access by setting the adminLogged cookie to Admi…

CVSS 7.5 EPSS 2.59% Apr 14, 2009
CVE-2008-6351 MEDIUM

Cross-site scripting (XSS) vulnerability in listtest.php in TurnkeyForms Local Classifieds allows remote attackers to inject arbitrary web script or HTML via t…

CVSS 4.3 EPSS 1.45% Mar 2, 2009
CVE-2008-6350 HIGH

SQL injection vulnerability in listtest.php in TurnkeyForms Local Classifieds allows remote attackers to execute arbitrary SQL commands via the r parameter.

CVSS 7.5 EPSS 0.97% Mar 2, 2009
CVE-2008-6349 HIGH

SQL injection vulnerability in survey_results_text.php in TurnkeyForms Business Survey Pro 1.0 allows remote attackers to execute arbitrary SQL commands via th…

CVSS 7.5 EPSS 0.97% Mar 2, 2009
CVE-2008-6302 HIGH

TurnkeyForms Local Classifieds allows remote attackers to bypass authentication and gain administrative access via a direct request to Site_Admin/admin.php.

CVSS 7.5 EPSS 2.57% Feb 26, 2009
CVE-2008-5487 MEDIUM

Cross-site scripting (XSS) vulnerability in admin.php in TurnkeyForms Text Link Sales allows remote attackers to inject arbitrary web script or HTML via the id…

CVSS 4.3 EPSS 1.57% Dec 12, 2008
CVE-2008-5486 HIGH

SQL injection vulnerability in admin.php in TurnkeyForms Text Link Sales allows remote attackers to execute arbitrary SQL commands via the id parameter.

CVSS 7.5 EPSS 1.04% Dec 12, 2008

Showing 1 to 12 CVEs · page 1