NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69594 | CVE-2005-3956 | Multiple SQL injection vulnerabilities in index.php in DMANews 0.904 and 0.910 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in a comments action and the (2) sortorder and (3) display_num parameters in a news_list action. | 2 | 7.5 | High | 2017-01-03 | 2008-10-03 | View | |
4314 | CVE-2008-4491 | Apple Mail.app 3.5 on Mac OS X, when "Store draft messages on the server" is enabled, stores draft copies of S/MIME email in plaintext on the email server, which allows server owners and remote man-in-the-middle attackers to read sensitive mail. | 2 | 5 | Medium | 2017-01-03 | 2009-02-10 | View | |
69850 | CVE-2005-4252 | Cross-site scripting (XSS) vulnerability in mcGallery PRO 2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search module parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4570 | CVE-2008-4756 | Cross-site scripting (XSS) vulnerability in add_prest_date.php in PHP-Daily allows remote attackers to inject arbitrary web script or HTML via the date parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-11-15 | View | |
70106 | CVE-2005-4508 | Nexus Concepts Dev Hound 2.24 and earlier allows remote attackers to obtain the installation path via a URL containing a non-existent .dll file. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 15834 of 17672, showing 5 records out of 88360 total, starting on record 79166, ending on 79170