NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69212  CVE-2005-3552  Multiple cross-site scripting (XSS) vulnerabilities in PHPKIT 1.6.1 R2 and earlier allow remote attackers to inject arbitrary web script or HTML via multiple vectors in (1) login/profile.php, (2) login/userinfo.php, (3) admin/admin.php, (4) imcenter.php, and the (5) referer statistics, the (6) HTML title element and (7) logo alt attributes in forum postings, and the (8) Homepage field in the Guestbook.    4.3  Medium  2017-07-18  2017-07-10  View
69211  CVE-2005-3551  toendaCMS before 0.6.2 stores user account and session data in the web root directory, which allows remote attackers to obtain sensitive information via a direct request to the appropriate XML file.    Medium  2017-01-03  2011-03-07  View
69210  CVE-2005-3550  Directory traversal vulnerability in admin.php in toendaCMS before 0.6.2 allows remote attackers to access arbitrary files via a .. (dot dot) in the id_user parameter.    Medium  2017-01-03  2011-03-07  View
69209  CVE-2005-3549  Direct code injection vulnerability in Task Manager in Invision Power Board 2.0.1 allows limited remote attackers to execute arbitrary code by referencing the file in "Task PHP File To Run" field and selecting "Run Task Now".    6.5  Medium  2017-07-18  2017-07-10  View
69208  CVE-2005-3548  Directory traversal vulnerability in Task Manager in Invision Power Board (IP.Board) 2.0.1 allows limited remote attackers to include files via a .. (dot dot) in the "Task PHP File To Run" field.    Medium  2017-07-18  2017-07-10  View

Page 14807 of 17672, showing 5 records out of 88360 total, starting on record 74031, ending on 74035

Actions