NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68327 | CVE-2005-2638 | Multiple cross-site scripting (XSS) vulnerabilities in PHPFreeNews 1.40 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) NewsMode parameter to NewsCategoryForm.php, or the (2) Match or (3) NewsMode parameter to SearchResults.php. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 68326 | CVE-2005-2637 | Multiple SQL injection vulnerabilities in PHPFreeNews 1.40 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) Match or (2) CatID parameter to SearchResults.php, or (3) the password to AccessControl.php. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 68325 | CVE-2005-2636 | SQL injection vulnerability in lib-view-direct.inc.php in phpAdsNew and phpPgAds before 2.0.6 allows remote attackers to execute arbitrary SQL commands via the clientid parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 68324 | CVE-2005-2635 | Multiple directory traversal vulnerabilities in phpAdsNew and phpPgAds before 2.0.6 allow remote attackers to include arbitrary files via a .. (dot dot) in the (1) layerstyle parameter to adlayer.php or (2) language parameter to js-form.php. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 68323 | CVE-2005-2634 | Buffer overflow in the Log-SCR function in the "Log to Screen" feature in WinFtp Server 1.6.8 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long request. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 14984 of 17672, showing 5 records out of 88360 total, starting on record 74916, ending on 74920