NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68535 | CVE-2005-2860 | Cross-site scripting (XSS) vulnerability in Nikto 1.35 and earlier allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 68791 | CVE-2005-3129 | Cross-site request forgery (CSRF) vulnerability in Serendipity 0.8.4 and earlier allows remote attackers to perform unauthorized actions as a logged in user via a link or IMG tag to serendipity_admin.php. | 2 | 5.1 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 3767 | CVE-2008-3905 | resolv.rb in Ruby 1.8.5 and earlier, 1.8.6 before 1.8.6-p287, 1.8.7 before 1.8.7-p72, and 1.9 r18423 and earlier uses sequential transaction IDs and constant source ports for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. | 2 | 5.8 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 69303 | CVE-2005-3665 | Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.7.0 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP_HOST variable and (2) various scripts in the libraries directory that handle header generation. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 4023 | CVE-2008-4167 | useradmin.php in Easy Photo Gallery (aka Ezphotogallery) 2.1 does not require administrative authentication, which allows remote attackers to (1) add or (2) remove an Administrator account. | 2 | 6.4 | Medium | 2017-01-03 | 2009-08-19 | View |
Page 15091 of 17672, showing 5 records out of 88360 total, starting on record 75451, ending on 75455