NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3787  CVE-2008-3925  Cross-site request forgery (CSRF) vulnerability in admin.php in Content Management Made Easy (CMME) 1.12 allows remote attackers to trigger the logout of an administrative user via a logout action.    4.3  Medium  2017-01-03  2009-01-29  View
69323  CVE-2005-3685  Cross-site scripting (XSS) vulnerability in shopadmin.asp in VP-ASP Shopping Cart 5.50 allows remote attackers to inject arbitrary web script or HTML via the UserName parameter.    4.3  Medium  2017-01-03  2011-03-07  View
4043  CVE-2008-4187  Directory traversal vulnerability in index.php in ProActive CMS allows remote attackers to read arbitrary files via a .. (dot dot) in the template parameter.    4.3  Medium  2017-01-03  2009-01-29  View
69579  CVE-2005-3941  SQL injection vulnerability in blog.php in Orca Blog 1.3b and earlier allows remote attackers to execute arbitrary SQL commands via the msg parameter.    7.5  High  2017-01-03  2011-03-07  View
4299  CVE-2008-4476  sympa.pl in sympa 5.3.4 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/sympa_aliases.$$ temporary file. NOTE: wwsympa.fcgi was also reported, but the issue occurred in a dead function, so it is not a vulnerability.    6.9  Medium  2017-01-03  2009-09-08  View

Page 15703 of 17672, showing 5 records out of 88360 total, starting on record 78511, ending on 78515

Actions