NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69138  CVE-2005-3477  Multiple interpretation error in the image upload handling code in Invision Gallery 2.0.3 allows remote attackers to conduct cross-site scripting (XSS) attacks via HTML or script in an image whose type does not match its extension, which is rendered by Internet Explorer due to CVE-2005-3312. NOTE: it could be argued that this vulnerability is due to a design flaw in Internet Explorer and the proper fix should be in that browser; if so, then this should not be treated as a vulnerability in Invision Gallery.    4.3  Medium  2017-01-03  2008-09-05  View
3858  CVE-2008-3996  Unspecified vulnerability in the Change Data Capture component in Oracle Database 10.1.0.5, 10.2.0.4, and 11.1.0.6 allows remote authenticated users to affect confidentiality and integrity, related to SYS.DBMS_CDC_IPUBLISH.    5.5  Medium  2017-01-03  2012-10-29  View
69394  CVE-2005-3756  Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to port scan arbitrary hosts via URLs with modified targets and ports, then comparing the resulting error messages to determine open and closed ports.    Medium  2017-01-03  2011-03-07  View
4114  CVE-2008-4278  VMware VirtualCenter 2.5 before Update 3 build 119838 on Windows displays a user"s password in cleartext when the password contains unspecified special characters, which allows physically proximate attackers to steal the password.    2.1  Low  2017-01-03  2011-03-07  View
69650  CVE-2005-4012  Multiple cross-site scripting (XSS) vulnerabilities in PHP Web Statistik 1.4 allows remote attackers to inject arbitrary web script or HTML via (1) the lastnumber parameter to stat.php and (2) the HTTP referer to pixel.php.    4.3  Medium  2017-01-03  2011-03-07  View

Page 1581 of 17672, showing 5 records out of 88360 total, starting on record 7901, ending on 7905

Actions