NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3356 | CVE-2008-3483 | Cross-site scripting (XSS) vulnerability in ScrewTurn Wiki 2.0.29 and 2.0.30 allows remote attackers to inject arbitrary web script or HTML via error messages in the "/admin.aspx - System Log" page. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-14 | View | |
68892 | CVE-2005-3230 | Multiple interpretation error in unspecified versions of Panda Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper. | 2 | 5.1 | Medium | 2017-01-03 | 2016-10-17 | View | |
69404 | CVE-2005-3766 | Exponent CMS 0.96.3 and later versions stores sensitive user pages under the web document root with insufficient access control even though certain permissions are specified, which allows attackers to access the pages by browsing uploaded files. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
69660 | CVE-2005-4022 | Cross-site scripting (XSS) vulnerability in the "Add Image From Web" feature in Gallery 2.0 before 2.0.2 allows remote attackers to inject arbitrary web script or HTML via Javascript in an IMG tag. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4636 | CVE-2008-4822 | Adobe Flash Player 9.0.124.0 and earlier does not properly interpret policy files, which allows remote attackers to bypass a non-root domain policy. | 2 | 6.8 | Medium | 2017-01-03 | 2012-10-30 | View |
Page 1012 of 17672, showing 5 records out of 88360 total, starting on record 5056, ending on 5060