CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10250  CVE-2004-1823  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Jelsoft vBulletin 2.0 beta 3 through 3.0 can4 allows remote attackers to inject arbitrary web script or HTML via the (1) page parameter to showthread.php or (2) order parameter to forumdisplay.php.  Assigned (20050504)  None (candidate not yet proposed)    View
10249  CVE-2004-1822  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Phorum 3.1 through 5.0.3 beta allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP_REFERER parameter to login.php, (2) HTTP_REFERER parameter to register.php, or (3) target parameter to profile.php.  Assigned (20050504)  None (candidate not yet proposed)    View
10248  CVE-2004-1821  Candidate  SQL injection vulnerability in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to gain privileges or perform unauthorized database operations via the gid parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10247  CVE-2004-1820  Candidate  PHP remote file inclusion vulnerability in displaycategory.php in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to execute arbitrary PHP code by modifying the basepath parameter to reference a URL on a remote web server that contains fileFunctions.php.  Assigned (20050504)  None (candidate not yet proposed)    View
10246  CVE-2004-1819  Candidate  4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to obtain sensitive information via a direct request to displaycategory.php, which reveals the path in an error message.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 18894 of 20943, showing 5 records out of 104715 total, starting on record 94466, ending on 94470

Actions