NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
33264 | CVE-2014-5640 | The CM Backup -Restore,Cloud,Photo (aka com.ijinshan.kbackup) application 1.1.0.135 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-07-18 | 2017-07-11 | View | |
66033 | CVE-2005-0270 | Multiple cross-site scripting (XSS) vulnerabilities in ReviewPost PHP Pro before 2.84 allow remote attackers to inject arbitrary web script or HTML via the (1) si parameter to showcat.php, (2) cat or (3) page parameter to showproduct.php, or (4) report parameter to reportproduct.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
66545 | CVE-2005-0795 | HolaCMS 1.4.9 does not restrict file access to the holaDB/votes directory, which allows remote attackers to overwrite arbitrary files via a modified vote_filename parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
66801 | CVE-2005-1052 | Microsoft Outlook 2003 and Outlook Web Access (OWA) 2003 do not properly display comma separated addresses in the From field in an e-mail message, which could allow remote attackers to spoof e-mail addresses. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
68337 | CVE-2005-2648 | Directory traversal vulnerability in index.php in W-Agora 4.2.0 and earlier allows remote attackers to read arbitrary files via the site parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1302 of 17672, showing 5 records out of 88360 total, starting on record 6506, ending on 6510