NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67410  CVE-2005-1685  episodex guestbook allows remote attackers to bypass authentication and edit scripts via a direct request to admin.asp.    7.5  High  2017-01-03  2016-10-17  View
2130  CVE-2008-2203  SQL injection vulnerability in search.php in Maian Search 1.1 allows remote attackers to execute arbitrary SQL commands via the keywords parameter in a search action.    7.5  High  2017-01-03  2009-01-29  View
67666  CVE-2005-1951  Multiple HTTP Response Splitting vulnerabilities in osCommerce 2.2 Milestone 2 and earlier allow remote attackers to spoof web content and poison web caches via hex-encoded CRLF ("%0d%0a") sequences in the (1) products_id or (2) pid parameter to index.php or (3) goto parameter to banner.php.    Medium  2017-01-03  2016-10-17  View
2386  CVE-2008-2478  ** DISPUTED ** scripts/wwwacct in cPanel 11.18.6 STABLE and earlier and 11.23.1 CURRENT and earlier allows remote authenticated users with reseller privileges to execute arbitrary code via shell metacharacters in the Email address field (aka Email text box). NOTE: the vendor disputes this, stating "I"m unable to reproduce such an issue on multiple servers running different versions of cPanel."    8.5  High  2017-01-03  2008-09-05  View
67922  CVE-2005-2220  ** DISPUTED ** Dragonfly Commerce allows remote attackers to change a product price by modifying the x_DragonflyCartProductPrice hidden field to (1) dc_Categorieslist.asp, (2) dc_Categoriesview.asp, (3) dc_productslist.asp, and (4) dc_productslist_Clearance.asp. NOTE: the vendor has disputed this issue, saying that "Dragonfly Commerce does not allow for editing prices nor does it allow for viewing information about clients stored in the database except by the store owner and authorized staff as appointed in the store administration." However, SecurityTracker claims that they have been able to confirm the problem.    Medium  2017-01-03  2016-10-17  View

Page 14611 of 17672, showing 5 records out of 88360 total, starting on record 73051, ending on 73055

Actions