NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 67410 | CVE-2005-1685 | episodex guestbook allows remote attackers to bypass authentication and edit scripts via a direct request to admin.asp. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 2130 | CVE-2008-2203 | SQL injection vulnerability in search.php in Maian Search 1.1 allows remote attackers to execute arbitrary SQL commands via the keywords parameter in a search action. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 67666 | CVE-2005-1951 | Multiple HTTP Response Splitting vulnerabilities in osCommerce 2.2 Milestone 2 and earlier allow remote attackers to spoof web content and poison web caches via hex-encoded CRLF ("%0d%0a") sequences in the (1) products_id or (2) pid parameter to index.php or (3) goto parameter to banner.php. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 2386 | CVE-2008-2478 | ** DISPUTED ** scripts/wwwacct in cPanel 11.18.6 STABLE and earlier and 11.23.1 CURRENT and earlier allows remote authenticated users with reseller privileges to execute arbitrary code via shell metacharacters in the Email address field (aka Email text box). NOTE: the vendor disputes this, stating "I"m unable to reproduce such an issue on multiple servers running different versions of cPanel." | 2 | 8.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 67922 | CVE-2005-2220 | ** DISPUTED ** Dragonfly Commerce allows remote attackers to change a product price by modifying the x_DragonflyCartProductPrice hidden field to (1) dc_Categorieslist.asp, (2) dc_Categoriesview.asp, (3) dc_productslist.asp, and (4) dc_productslist_Clearance.asp. NOTE: the vendor has disputed this issue, saying that "Dragonfly Commerce does not allow for editing prices nor does it allow for viewing information about clients stored in the database except by the store owner and authorized staff as appointed in the store administration." However, SecurityTracker claims that they have been able to confirm the problem. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 14611 of 17672, showing 5 records out of 88360 total, starting on record 73051, ending on 73055