NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68535  CVE-2005-2860  Cross-site scripting (XSS) vulnerability in Nikto 1.35 and earlier allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report.    4.3  Medium  2017-01-03  2016-10-17  View
68791  CVE-2005-3129  Cross-site request forgery (CSRF) vulnerability in Serendipity 0.8.4 and earlier allows remote attackers to perform unauthorized actions as a logged in user via a link or IMG tag to serendipity_admin.php.    5.1  Medium  2017-07-18  2017-07-10  View
3767  CVE-2008-3905  resolv.rb in Ruby 1.8.5 and earlier, 1.8.6 before 1.8.6-p287, 1.8.7 before 1.8.7-p72, and 1.9 r18423 and earlier uses sequential transaction IDs and constant source ports for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447.    5.8  Medium  2017-01-03  2011-03-07  View
69303  CVE-2005-3665  Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.7.0 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP_HOST variable and (2) various scripts in the libraries directory that handle header generation.    4.3  Medium  2017-01-03  2011-03-07  View
4023  CVE-2008-4167  useradmin.php in Easy Photo Gallery (aka Ezphotogallery) 2.1 does not require administrative authentication, which allows remote attackers to (1) add or (2) remove an Administrator account.    6.4  Medium  2017-01-03  2009-08-19  View

Page 15091 of 17672, showing 5 records out of 88360 total, starting on record 75451, ending on 75455

Actions