NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 69967 | CVE-2005-4369 | Cross-site scripting (XSS) vulnerability in Acuity CMS 2.6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly strSearchKeywords to browse.asp. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 69966 | CVE-2005-4368 | roundcube webmail Alpha, with a default high verbose level ($rcmail_config["debug_level"] = 1), allows remote attackers to obtain the full path of the application via an invalid_task parameter, which leaks the path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2015-08-27 | View | |
| 69965 | CVE-2005-4367 | Cross-site scripting (XSS) vulnerability in register_domain.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the "Domain Availability" field. NOTE: this issue was later reported to affect CONTROLzx (renamed from DRZES) 3.3.4. | 2 | 5.8 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 69964 | CVE-2005-4366 | Multiple SQL injection vulnerabilities in DRZES HMS 3.2 allow remote attackers to execute arbitrary SQL commands via the (1) plan_id parameter to (a) domains.php, (b) viewusage.php, (c) pop_accounts.php, (d) databases.php, (e) ftp_users.php, (f) crons.php, (g) pass_dirs.php, (h) zone_files.php, (i) htaccess.php, and (j) software.php; (2) the customerPlanID parameter to viewplan.php; (3) the ref_id parameter to referred_plans.php; (4) customerPlanID parameter to listcharges.php; and (5) the domain parameter to (k) pop_accounts.php, (d) databases.php, (e) ftp_users.php, (f) crons.php, (g) pass_dirs.php, (h) zone_files.php, (i) htaccess.php, and (j) software.php. NOTE: the viewinvoice.php invoiceID vector is already covered by CVE-2005-4137. | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 69963 | CVE-2005-4365 | Multiple cross-site scripting (XSS) vulnerabilities in FLIP 0.9.0.1029 allow remote attackers to inject arbitrary web script or HTML via the (1) name parameter in text.php and (2) frame parameter in forum.php. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 14656 of 17672, showing 5 records out of 88360 total, starting on record 73276, ending on 73280