NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68557 | CVE-2005-2882 | Multiple cross-site scripting (XSS) vulnerabilities in phpCommunityCalendar 4.0.3, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via the LocationID parameter to (1) thankyou.php or (2) day.php, font parameter to (3) calDaily.php, (4) calMonthly.php, (5) calMonthlyP.php, (6) calWeekly.php, (7) calWeeklyP.php, (8) calYearly.php, (9) calYearlyP.php, (10) day.php, or (11) week.php, or (12) CeTi, (13) Contact, (14) Description, (15) ShowAddress parameter to event.php, and other attack vectors. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 68556 | CVE-2005-2881 | phpCommunityCalendar 4.0.3 allows remote attackers to bypass authentication and gain unauthorized access via a direct request to the admin directory. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 68555 | CVE-2005-2880 | Multiple SQL injection vulnerabilities in phpCommunityCalendar 4.0.3, and possibly earlier versions, allow remote attackers to execute arbitrary SQL commands via the (1) login field in login.php or (2) LocationID parameter to week.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 68554 | CVE-2005-2879 | Advansysperu Software USB Lock Auto-Protect (AP) 1.5 uses a weak encryption scheme to encrypt passwords, which allows local users to gain sensitive information and bypass USB interface protection. | 2 | 2.1 | Low | 2017-01-03 | 2016-10-17 | View | |
| 68553 | CVE-2005-2878 | Format string vulnerability in search.c in the imap4d server in GNU Mailutils 0.6 allows remote authenticated users to execute arbitrary code via format string specifiers in the SEARCH command. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View |
Page 14938 of 17672, showing 5 records out of 88360 total, starting on record 74686, ending on 74690