NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
4355 | CVE-2008-4532 | Cross-site scripting (XSS) vulnerability in index.php in MaxiScript Website Directory allows remote attackers to inject arbitrary web script or HTML via the keyword parameter in a search action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
69891 | CVE-2005-4293 | Cross-site scripting (XSS) vulnerability in cp-app.cgi in ClickCartPro (CCP) 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the affl parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4611 | CVE-2008-4797 | Directory traversal vulnerability in Arihiro Kurata Kantan WEB Server 1.8 and earlier allows remote attackers to read arbitrary files via unknown vectors. | 2 | 5 | Medium | 2017-01-03 | 2008-11-18 | View | |
70147 | CVE-2005-4558 | IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, does not properly restrict acceptable values for the language parameter to mail/settings.html before it is stored in a database, which can allow remote authenticated users to include arbitrary PHP code via a URL in a modified lang_settings parameter to mail/index.html. | 2 | 6.5 | Medium | 2017-01-03 | 2016-10-17 | View | |
4867 | CVE-2008-5080 | awstats.pl in AWStats 6.8 and earlier does not properly remove quote characters, which allows remote attackers to conduct cross-site scripting (XSS) attacks via the query_string parameter. NOTE: this issue exists because of an incomplete fix for CVE-2008-3714. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-04 | View |
Page 116 of 17672, showing 5 records out of 88360 total, starting on record 576, ending on 580