NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67177  CVE-2005-1439  Directory traversal vulnerability in attachments.php in osTicket allows remote attackers to read arbitrary files via .. sequences in the file parameter.    7.5  High  2017-01-03  2008-09-05  View
67176  CVE-2005-1438  PHP remote file inclusion vulnerability in main.php in osTicket allows remote attackers to execute arbitrary PHP code via the include_dir parameter.    7.5  High  2017-01-03  2008-09-05  View
67175  CVE-2005-1437  Multiple SQL injection vulnerabilities in osTicket allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to admin.php or (2) cat parameter to view.php.    7.5  High  2017-01-03  2008-09-05  View
67174  CVE-2005-1436  Multiple cross-site scripting (XSS) vulnerabilities in osTicket allow remote attackers to inject arbitrary web script or HTML via (1) the t parameter to view.php, (2) the osticket_title parameter to header.php, (3) the em parameter to admin_login.php, (4) the e parameter to user_login.php, (5) the err parameter to open_submit.php, or (6) the name and subject fields when adding a ticket.    6.8  Medium  2017-01-03  2013-07-14  View
67173  CVE-2005-1435  Open WebMail (OWM) before 2.51 20050430 allows remote authenticated users to execute arbitrary commands via shell metacharacters in a filename.    7.5  High  2017-01-03  2008-09-05  View

Page 15214 of 17672, showing 5 records out of 88360 total, starting on record 76066, ending on 76070

Actions