NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66491 | CVE-2005-0741 | Cross-site scripting (XSS) vulnerability in YaBB.pl for YaBB 2.0 RC1 allows remote attackers to inject arbitrary web script or HTML via the username parameter in a usersrecentposts action. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
1211 | CVE-2008-1252 | b_banner.stm (aka the login page) on the Deutsche Telekom Speedport W500 DSL router allows remote attackers to obtain the logon password by reading the pwd field in the HTML source. | 2 | 10 | High | 2017-01-03 | 2008-09-05 | View | |
1467 | CVE-2008-1523 | ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), allow remote authenticated users to obtain ISP and Dynamic DNS credentials by sending a direct request for (1) WAN.html, (2) wzPPPOE.html, and (3) rpDyDNS.html, and then reading the HTML source. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
67259 | CVE-2005-1521 | Integer overflow in the fetch_io function of the imap4d server in GNU Mailutils 0.5 and 0.6, and other versions before 0.6.90, allows remote attackers to execute arbitrary code via a partial message request with a large value in the END parameter, which leads to a heap-based buffer overflow. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
68027 | CVE-2005-2326 | Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web script or HTML via the yr parameter to calendar.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 1245 of 17672, showing 5 records out of 88360 total, starting on record 6221, ending on 6225