CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10247 | CVE-2004-1820 | Candidate | PHP remote file inclusion vulnerability in displaycategory.php in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to execute arbitrary PHP code by modifying the basepath parameter to reference a URL on a remote web server that contains fileFunctions.php. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10248 | CVE-2004-1821 | Candidate | SQL injection vulnerability in 4nalbum 0.92 for PHP-Nuke 6.5 through 7.0 allows remote attackers to gain privileges or perform unauthorized database operations via the gid parameter. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10249 | CVE-2004-1822 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Phorum 3.1 through 5.0.3 beta allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP_REFERER parameter to login.php, (2) HTTP_REFERER parameter to register.php, or (3) target parameter to profile.php. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10250 | CVE-2004-1823 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Jelsoft vBulletin 2.0 beta 3 through 3.0 can4 allows remote attackers to inject arbitrary web script or HTML via the (1) page parameter to showthread.php or (2) order parameter to forumdisplay.php. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10251 | CVE-2004-1824 | Candidate | Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin before 3.0 allows remote attackers to inject arbitrary web script or HTML via the what parameter to memberlist.php. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 19404 of 20943, showing 5 records out of 104715 total, starting on record 97016, ending on 97020