NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 1877 | CVE-2008-1941 | Cross-site scripting (XSS) vulnerability in the profile update feature in Akiva WebBoard 8.0 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors in the form field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 3.5 | Low | 2017-01-03 | 2008-09-05 | View | |
| 67413 | CVE-2005-1688 | Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/, (2) wp-includes/, or (3) wp-admin/, which reveal the path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 2133 | CVE-2008-2206 | Multiple cross-site scripting (XSS) vulnerabilities in Maian Music 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter in a search action to index.php, and the (2) msg_script parameter to admin/inc/footer.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 67669 | CVE-2005-1954 | singapore 0.9.11 allows remote attackers to obtain sensitive information via a direct request to (1) admin.class.php, (2) any .tpl.php file in templates/admin_default/, or (3) any .tpl.php file in templates/default/, which reveal the path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 2389 | CVE-2008-2481 | PHP remote file inclusion vulnerability in authentication/phpbb3/phpbb3.functions.php in phpRaider 1.0.7 and 1.0.7a, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the pConfig_auth[phpbb_path] parameter. | 2 | 10 | High | 2017-01-03 | 2011-03-07 | View |
Page 14639 of 17672, showing 5 records out of 88360 total, starting on record 73191, ending on 73195