NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
80411 | CVE-2002-1458 | Cross-site scripting vulnerability in L-Forum 2.40 and earlier, when the "Enable HTML in messages" option is on, allows remote attackers to insert arbitrary script or HTML via message fields including (1) From, (2) E-Mail, (3) Subject and (4) Body. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
80412 | CVE-2002-1459 | Cross-site scripting vulnerability in L-Forum 2.40 and earlier, when the "Enable HTML in messages" option is off, allows remote attackers to insert arbitrary script or HTML via message fields including (1) From, (2) E-Mail, and (3) Subject. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
80413 | CVE-2002-1460 | L-Forum 2.40 and earlier does not properly verify whether a file was uploaded or if the associated variables were set by POST (attachment, attachment_name, attachment_size and attachment_type), which allows remote attackers to read arbitrary files. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
80414 | CVE-2002-1461 | Web Shop Manager 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the search box. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
80415 | CVE-2002-1462 | details2.php in OrganicPHP PHP-affiliate 1.0, and possibly later versions, allows remote attackers to modify information of other users by modifying certain hidden form fields. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View |
Page 1149 of 17672, showing 5 records out of 88360 total, starting on record 5741, ending on 5745