NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
258  CVE-2008-0273  Interpretation conflict in Drupal 4.7.x before 4.7.11 and 5.x before 5.6, when Internet Explorer 6 is used, allows remote attackers to conduct cross-site scripting (XSS) attacks via invalid UTF-8 byte sequences, which are not processed as UTF-8 by Drupal"s HTML filtering, but are processed as UTF-8 by Internet Explorer, effectively removing characters from the document and defeating the HTML protection mechanism.    4.3  Medium  2017-01-03  2011-03-07  View
65794  CVE-2006-7253  GE Healthcare Infinia II has a default password of (1) infinia for the infinia user, (2) #bigguy1 for the acqservice user, (3) dont4get2 for the Administrator user, (4) #bigguy1 for the emergency user, and (5) 2Bfamous for the InfiniaAdmin user, which has unspecified impact and attack vectors.    10  High  2016-12-20  2015-08-11  View
514  CVE-2008-0539  Cross-site scripting (XSS) vulnerability in dms/policy/rep_request.php in F5 BIG-IP Application Security Manager (ASM) 9.4.3 allows remote attackers to inject arbitrary web script or HTML via the report_type parameter.    4.3  Medium  2017-01-03  2011-03-07  View
66050  CVE-2005-0287  Bottomline Webseries Payment Application allows remote attackers to read arbitrary files on the network via a report template with modified ReportPath or ReportName values.    Medium  2017-07-18  2017-07-10  View
770  CVE-2008-0799  SQL injection vulnerability in index.php in the Quiz (com_quiz) 0.81 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the tid parameter in a user_tst_shw action.    7.5  High  2017-01-03  2008-09-05  View

Page 137 of 17672, showing 5 records out of 88360 total, starting on record 681, ending on 685

Actions