NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
70226  CVE-2005-4637  Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kayako SupportSuite 3.00.26 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) nav parameter in the downloads module, (2) Full Name and (3) Email fields in the core module, (4) Full Name, (5) Email, and (6) Subject fields in the tickets module, or (7) Registered Email field in the lostpassword feature in the core module.    4.3  Medium  2017-01-03  2008-09-20  View
69971  CVE-2005-4373  Adaptive Website Framework (AWF) 2.10 and earlier allows remote attackers to obtain the full path of the application via an invalid mode parameter to community.html, which leaks the path in an error message.    Medium  2017-01-03  2008-09-20  View
70227  CVE-2005-4638  index.php in Kayako SupportSuite 3.00.26 and earlier allow remote attackers to obtain the full path via (1) _a and (2) newsid parameters in the news module, (3) downloaditemid parameter in the downloads module, and (4) kbarticleid parameter in the knowledgebase module.    Medium  2017-01-03  2008-09-20  View
70229  CVE-2005-4640  SQL injection vulnerability in index.php in class-1 Poll Software 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) pollid or (2) previouspoll parameters.    7.5  High  2017-01-03  2008-09-20  View
69974  CVE-2005-4376  Directory traversal vulnerability in Amaxus 3 and earlier allows remote attackers to access arbitrary files via ".." sequences in the change parameter.    Medium  2017-01-03  2008-09-20  View

Page 15500 of 17672, showing 5 records out of 88360 total, starting on record 77496, ending on 77500

Actions