NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65760 | CVE-2006-7217 | Apache Derby before 10.2.1.6 does not determine schema privilege requirements during the DropSchemaNode bind phase, which allows remote authenticated users to execute arbitrary drop schema statements in SQL authorization mode. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View | |
480 | CVE-2008-0505 | Multiple cross-site scripting (XSS) vulnerabilities in docs/showdoc.php in Coppermine Photo Gallery (CPG) before 1.4.15 allow remote attackers to inject arbitrary web script or HTML via the (1) h and (2) t parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-11 | View | |
736 | CVE-2008-0765 | Multiple cross-site scripting (XSS) vulnerabilities in artmedic webdesign weblog allow remote attackers to inject arbitrary web script or HTML via the (1) date parameter to artmedic_print.php and the (2) jahrneu parameter to index.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
66528 | CVE-2005-0778 | PhotoPost PHP 5.0 RC3 does not fully verify that an uploaded file is an image file, which allows remote attackers to inject arbitrary Javascript by uploading non-image files with an image extension such as .gif. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
1504 | CVE-2008-1560 | Multiple cross-site scripting (XSS) vulnerabilities in Digiappz DigiDomain 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) domain parameter to lookup_result.asp, and the (2) word1 and (3) word2 parameters to suggest_result.asp. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 16533 of 17672, showing 5 records out of 88360 total, starting on record 82661, ending on 82665