NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
70374  CVE-2005-4785  Cross-site scripting (XSS) vulnerability in QuickBlogger 1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) author ("your name") and (2) "comment" section.    4.3  Medium  2017-01-03  2011-03-07  View
5094  CVE-2008-5316  Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in Little cms color engine (aka lcms) before 1.16 allows attackers to have an unknown impact via vectors related to a length parameter inconsistency involving the contents of "the input file," a different vulnerability than CVE-2007-2741.    10  High  2017-01-03  2012-10-30  View
5350  CVE-2008-5601  User Engine Lite ASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for users.mdb.    Medium  2017-01-03  2009-01-29  View
5606  CVE-2008-5875  SQL injection vulnerability in the com_lowcosthotels component in the Hotel Booking Reservation System (aka HBS) for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a showhoteldetails action to index.php.    7.5  High  2017-01-03  2009-07-10  View
5862  CVE-2008-6131  Session fixation vulnerability in moziloWiki 1.0.1 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.    Medium  2017-01-03  2009-08-19  View

Page 16105 of 17672, showing 5 records out of 88360 total, starting on record 80521, ending on 80525

Actions