NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 66802 | CVE-2005-1053 | Multiple cross-site scripting (XSS) vulnerabilities in orderwiz.php in ModernBill 4.3.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) c_code or (2) aid parameters. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 66801 | CVE-2005-1052 | Microsoft Outlook 2003 and Outlook Web Access (OWA) 2003 do not properly display comma separated addresses in the From field in an e-mail message, which could allow remote attackers to spoof e-mail addresses. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 66800 | CVE-2005-1051 | SQL injection vulnerability in profile.php in PunBB 1.2.4 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a change_email action. | 2 | 6.5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 66799 | CVE-2005-1050 | The modload op in the Reviews module for PostNuke 0.760-RC3 allows remote attackers to obtain sensitive information via an invalid id parameter, which reveals the path in a PHP error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 66798 | CVE-2005-1049 | Multiple cross-site scripting vulnerabilities in PostNuke 0.760-RC3 allow remote attackers to inject arbitrary web script or HTML via the (1) module parameter to admin.php or (2) op parameter to user.php. NOTE: the vendor reports that certain issues could not be reproduced for 760 RC3, or for .750. However, the op/user.php issue exists when the pnAntiCracker setting is disabled. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View |
Page 15289 of 17672, showing 5 records out of 88360 total, starting on record 76441, ending on 76445