NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65576  CVE-2006-7033  Cross-site scripting (XSS) vulnerability in Super Link Exchange Script 1.0 allows remote attackers to inject arbitrary web script or HTML via IMG tags in the search box.    6.8  Medium  2016-12-20  2008-09-05  View
552  CVE-2008-0577  The Project Issue Tracking module 5.x-2.x-dev before 20080130 in the 5.x-2.x series, 5.x-1.2 and earlier in the 5.x-1.x series, 4.7.x-2.6 and earlier in the 4.7.x-2.x series, and 4.7.x-1.6 and earlier in the 4.7.x-1.x series for Drupal (1) does not restrict the extensions of attached files when the Upload module is enabled for issue nodes, which allows remote attackers to upload and possibly execute arbitrary files; and (2) accepts the .html extension within the bundled file-upload functionality, which allows remote attackers to upload files containing arbitrary web script or HTML.    6.4  Medium  2017-01-03  2011-03-07  View
66088  CVE-2005-0325  Xpand Rally 1.0.0.0 allows remote attackers or remote malicious game servers to cause a denial of service (application crash) via a packet with large values that are not properly handled in certain malloc or memcpy operations.    Medium  2017-07-18  2017-07-10  View
808  CVE-2008-0837  Cross-site scripting (XSS) vulnerability in the log feature in the John Godley Search Unleashed 0.2.10 plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter, which is not properly handled when the administrator views the log file.    4.3  Medium  2017-01-03  2008-09-05  View
1064  CVE-2008-1103  Multiple unspecified vulnerabilities in Blender have unknown impact and attack vectors, related to "temporary file issues."    6.9  Medium  2017-01-03  2009-01-30  View

Page 1454 of 17672, showing 5 records out of 88360 total, starting on record 7266, ending on 7270

Actions