NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64562  CVE-2006-5987  SQL injection vulnerability in default.asp in ASPintranet, possibly 1.2, allows remote attackers to execute arbitrary SQL commands via the a parameter.    7.5  High  2016-12-20  2008-09-05  View
65074  CVE-2006-6529  The Chatroom Module before 4.7.x.-1.0 for Drupal displays private messages in a chatroom"s last messages overview, which allows remote attackers to obtain sensitive information by reading the overview.    7.5  High  2016-12-20  2008-09-05  View
307  CVE-2008-0329  LulieBlog 1.0.1 and 1.0.2 does not restrict access to (1) article_suppr.php, (2) comment_accepter.php, and (3) comment_refuser.php in Admin/, which allows remote attackers to accept comments, delete comments, and delete articles via the id parameter.    Medium  2017-01-03  2008-09-05  View
819  CVE-2008-0848  Cross-site scripting (XSS) vulnerability in lostsheep.php in Crafty Syntax Live Help (CSLH) before 2.14.16, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: the versions claimed by the original researcher are probably incorrect.    4.3  Medium  2017-01-03  2008-09-05  View
67379  CVE-2005-1654  Hosting Controller 6.1 Hotfix 1.9 and earlier allows remote attackers to register arbitrary users via a direct request to addsubsite.asp with the loginname and password parameters set.    7.5  High  2017-01-03  2008-09-05  View

Page 16304 of 17672, showing 5 records out of 88360 total, starting on record 81516, ending on 81520

Actions