NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2065  CVE-2008-2131  Cross-site scripting (XSS) vulnerability in mvnForum 1.1 GA allows remote authenticated users to inject arbitrary web script or HTML via the topic field, which is later displayed by user/viewthread.jsp through use of the "quick reply button."    4.3  Medium  2017-01-03  2009-01-29  View
67601  CVE-2005-1883  global.php in YaPiG 0.92b allows remote attackers to include arbitrary local files via the BASE_DIR parameter.    Medium  2017-01-03  2008-09-05  View
2321  CVE-2008-2405  Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in HTTP requests to unspecified ASP applications.    7.5  High  2017-01-03  2011-03-07  View
67857  CVE-2005-2153  SQL injection vulnerability in class.ticket.php in osTicket 1.3.1 beta and earlier allows remote attackers to execute arbitrary SQL commands via the ticket variable.    7.5  High  2017-01-03  2008-09-05  View
2577  CVE-2008-2679  SQL injection vulnerability in the KeyWordsList function in _includes/inc_routines.asp in Realm CMS 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the kwrd parameter in a kwl action to the default URI.    7.5  High  2017-01-03  2008-09-10  View

Page 1160 of 17672, showing 5 records out of 88360 total, starting on record 5796, ending on 5800

Actions