NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65760  CVE-2006-7217  Apache Derby before 10.2.1.6 does not determine schema privilege requirements during the DropSchemaNode bind phase, which allows remote authenticated users to execute arbitrary drop schema statements in SQL authorization mode.    Medium  2016-12-20  2008-09-05  View
480  CVE-2008-0505  Multiple cross-site scripting (XSS) vulnerabilities in docs/showdoc.php in Coppermine Photo Gallery (CPG) before 1.4.15 allow remote attackers to inject arbitrary web script or HTML via the (1) h and (2) t parameters.    4.3  Medium  2017-01-03  2009-09-11  View
736  CVE-2008-0765  Multiple cross-site scripting (XSS) vulnerabilities in artmedic webdesign weblog allow remote attackers to inject arbitrary web script or HTML via the (1) date parameter to artmedic_print.php and the (2) jahrneu parameter to index.php.    4.3  Medium  2017-01-03  2008-09-05  View
66528  CVE-2005-0778  PhotoPost PHP 5.0 RC3 does not fully verify that an uploaded file is an image file, which allows remote attackers to inject arbitrary Javascript by uploading non-image files with an image extension such as .gif.    Medium  2017-07-18  2017-07-10  View
1504  CVE-2008-1560  Multiple cross-site scripting (XSS) vulnerabilities in Digiappz DigiDomain 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) domain parameter to lookup_result.asp, and the (2) word1 and (3) word2 parameters to suggest_result.asp.    4.3  Medium  2017-01-03  2008-09-05  View

Page 16533 of 17672, showing 5 records out of 88360 total, starting on record 82661, ending on 82665

Actions