NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69507  CVE-2005-3869  Cross-site scripting (XSS) vulnerability in index.php in Google API Search 1.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via hex-encoded values in the REQ parameter.    4.3  Medium  2017-01-03  2011-03-07  View
4227  CVE-2008-4401  ActionScript in Adobe Flash Player 9.0.124.0 and earlier does not require user interaction in conjunction with (1) the FileReference.browse operation in the FileReference upload API or (2) the FileReference.download operation in the FileReference download API, which allows remote attackers to create a browse dialog box, and possibly have unspecified other impact, via an SWF file.    10  High  2017-01-03  2011-03-07  View
69763  CVE-2005-4155  registration.PHP in ATutor 1.5.1 pl2 allows remote attackers to execute arbitrary SQL commands via an e-mail address that ends in a NULL character, which bypasses the PHP regular expression check. NOTE: it is possible that this is actually a bug in PHP code, in which case this should not be treated as a vulnerability in ATutor.    7.5  High  2017-01-03  2008-09-05  View
4483  CVE-2008-4669  Cross-site scripting (XSS) vulnerability in search.php in Dan Fletcher Recipe Script allows remote attackers to inject arbitrary web script or HTML via the keyword parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-03  2008-10-22  View
70019  CVE-2005-4421  Dev-Editor 3.0 allows remote attackers to access any directory outside the web root whose name is a substring of the web root directory name.    7.5  High  2017-01-03  2011-03-07  View

Page 15066 of 17672, showing 5 records out of 88360 total, starting on record 75326, ending on 75330

Actions