NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 70186 | CVE-2005-4597 | Cross-site scripting (XSS) vulnerability in index.php in iPei Guestbook 1.7 allows remote attackers to inject arbitrary web script or HTML via the email parameter, as used by the email field, when signing a guestbook. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 69931 | CVE-2005-4333 | Multiple cross-site scripting (XSS) vulnerabilities in Binary Board System (BBS) 0.2.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) inreplyto, (2) article, and (3) board parameters to reply.pl, (4) branch, (5) board, and (6) stats.pl parameters to (b) stats.pl, and (7) board parameter to (c) toc.pl. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 70187 | CVE-2005-4598 | Cross-site scripting (XSS) vulnerability in home.php in OoApp Guestbook 2.1 allows remote attackers to inject arbitrary web script or HTML via the page parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 69933 | CVE-2005-4335 | ProjectForum 4.7.0 and earlier allows remote attackers to cause a denial of service (crash) via a crafted pageid parameter to admin/versions.html. | 2 | 7.8 | High | 2017-01-03 | 2008-09-20 | View | |
| 69944 | CVE-2005-4346 | Invalid SQL syntax error in blog.php in phpBB Blog 2.2.2 and earlier allows remote attackers to obtain the full path of the application via an invalid permalink parameter to index.php, which produces an invalid SQL query that leaks the full pathname in a SQL syntax error message. NOTE: this was originally claimed to be SQL injection, but a cleansing step strips all non-digit characters and leaves an empty permalink argument, which leads to the syntax error. | 2 | 5 | Medium | 2017-01-03 | 2008-09-20 | View |
Page 15496 of 17672, showing 5 records out of 88360 total, starting on record 77476, ending on 77480