NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69837 | CVE-2005-4239 | Cross-site scripting (XSS) vulnerability in Search/DisplayResults.php in PHP JackKnife 2.21 and earlier allows remote attackers to inject arbitrary web script or HTML via URL-encoded values in the sKeywords parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
70349 | CVE-2005-4760 | BEA WebLogic Server and WebLogic Express 8.1 SP3 and earlier, and 7.0 SP5 and earlier, when fullyDelegatedAuthorization is enabled for a servlet, does not cause servlet deployment to fail when failures occur in authorization or role providers, which might prevent the servlet from being "fully protected." | 2 | 5.1 | Medium | 2017-01-03 | 2008-09-05 | View | |
71117 | CVE-2004-0690 | The DCOPServer in KDE 3.2.3 and earlier allows local users to gain unauthorized access via a symlink attack on DCOP files in the /tmp directory. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
5837 | CVE-2008-6106 | Cross-site request forgery (CSRF) vulnerability in IBM Workplace for Business Controls and Reporting 2.x and IBM Workplace Web Content Management 6.x has unknown impact and remote attack vectors. NOTE: some of these details are obtained from third party information. | 2 | 6.8 | Medium | 2017-01-03 | 2009-08-08 | View | |
71885 | CVE-2004-1506 | Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar allow remote attackers to inject arbitrary web script via (1) view_entry.php, (2) view_d.php, (3) usersel.php, (4) datesel.php, (5) trailer.php, or (6) styles.php, as demonstrated using img srg tags. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 15860 of 17672, showing 5 records out of 88360 total, starting on record 79296, ending on 79300