NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 1883 | CVE-2008-1947 | Cross-site scripting (XSS) vulnerability in Apache Tomcat 5.5.9 through 5.5.26 and 6.0.0 through 6.0.16 allows remote attackers to inject arbitrary web script or HTML via the name parameter (aka the hostname attribute) to host-manager/html/add. | 2 | 4.3 | Medium | 2017-01-03 | 2014-03-15 | View | |
| 67419 | CVE-2005-1694 | Multiple SQL injection vulnerabilities in Xanthia.php in the Xanthia module in PostNuke 0.750 allow remote attackers to execute arbitrary SQL commands via the (1) name or (2) module parameter. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 2139 | CVE-2008-2212 | Multiple cross-site scripting (XSS) vulnerabilities in Maian Cart 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) msg_adminheader, (2) msg_adminheader2, (3) msg_adminheader3, (4) msg_adminheader4, and unspecified other parameters to admin/inc/header.php; the (5) msg_script3 and unspecified other parameters to admin/inc/footer.php; and the (6) keywords parameter to index.php in a search action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 67675 | CVE-2005-1960 | The getemails function in C.J. Steele Tattle allows remote attackers to execute arbitrary commands via shell metacharacters in certain log entries, as demonstrated using shell metacharacters in an FTP username. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 2395 | CVE-2008-2487 | SQL injection vulnerability in index.php in MAXSITE 1.10 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter in a webboard action. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View |
Page 14696 of 17672, showing 5 records out of 88360 total, starting on record 73476, ending on 73480