NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69764  CVE-2005-4156  Unspecified vulnerability in Mambo 4.5 (1.0.0) through 4.5 (1.0.9), with magic_quotes_gpc disabled, allows remote attackers to read arbitrary files and possibly cause a denial of service via a query string that ends with a NULL character.    9.4  High  2017-01-03  2008-09-05  View
4484  CVE-2008-4670  Cross-site scripting (XSS) vulnerability in search.php in Ed Pudol Clickbank Portal allows remote attackers to inject arbitrary web script or HTML via the search box. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-03  2008-10-22  View
70020  CVE-2005-4422  Unrestricted file upload vulnerability in toendaCMS before 0.6.2 Stable allows remote authenticated administrators to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in data/images/albums.    6.5  Medium  2017-01-03  2008-09-05  View
4740  CVE-2008-4951  dtc 0.29.6 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/awstats.log, (b) /tmp/spam.log.#####, and (c) /tmp/spam_err.log temporary files, related to the (1) accesslog.php and (2) sa-wrapper scripts.    6.9  Medium  2017-01-03  2008-11-15  View
70276  CVE-2005-4687  PunBB 1.2.9, used alone or with F-ART BLOG:CMS, may trust a client"s IP address as specified in the X-Forwarded-For HTTP header rather than the TCP/IP stack, which allows remote attackers to misrepresent their IP address by sending a modified header.    Medium  2017-01-03  2008-09-05  View

Page 15075 of 17672, showing 5 records out of 88360 total, starting on record 75371, ending on 75375

Actions