NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2596  CVE-2008-2698  Multiple cross-site scripting (XSS) vulnerabilities in photo_add-c.php (aka the "add comment" section) in WEBalbum 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) id, or (3) category parameter.    4.3  Medium  2017-01-03  2009-01-29  View
68132  CVE-2005-2441  Multiple cross-site scripting (XSS) vulnerabilities in VBzoom allow remote attackers to inject arbitrary web script and HTML via the (1) UserName parameter to profile.php or (2) UserID parameter to login.php.    4.3  Medium  2017-07-18  2017-07-10  View
2852  CVE-2008-2958  Race condition in (1) checkinstall 1.6.1 and (2) installwatch allows local users to overwrite arbitrary files and have other impacts via symlink and possibly other attacks on temporary working directories.    4.4  Medium  2017-01-03  2008-09-05  View
68388  CVE-2005-2699  Unrestricted file upload vulnerability in admin/admin.php in PHPKit 1.6.1 allows remote authenticated administrators to execute arbitrary PHP code by uploading a .php file to the content/images/ directory using images.php. NOTE: if a PHPKit administrator must already have access to the end system to install or modify configuration of the product, then this issue might not cross privilege boundaries, and should not be included in CVE.    4.6  Medium  2017-01-03  2016-10-17  View
68644  CVE-2005-2980  Cross-site scripting (XSS) vulnerability in index.php in phpoutsourcing Noah's classifieds 1.3 allows remote attackers to inject arbitrary web script or HTML via the rollid parameter.    4.3  Medium  2017-07-18  2017-07-10  View

Page 1310 of 17672, showing 5 records out of 88360 total, starting on record 6546, ending on 6550

Actions