NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6113 | CVE-2008-6382 | ASP Portal 3.2.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request to ASPPortal.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-03-03 | View | |
71649 | CVE-2004-1269 | lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes subsequent invocations of lppasswd to fail. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6625 | CVE-2008-6894 | Multiple cross-site scripting (XSS) vulnerabilities in login.php in 3CX Phone System Free Edition 6.1793 and 6.0.806.0 allow remote attackers to inject arbitrary web script or HTML via the (1) fName and (2) fPassword parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2013-07-20 | View | |
6881 | CVE-2008-7150 | Cross-site scripting (XSS) vulnerability in Refine by Taxonomy 5.x before 5.x-0.1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via a taxonomy term, which is not properly handled by refine_by_taxo when displaying tags. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-03 | View | |
72417 | CVE-2004-2040 | Multiple cross-site scripting (XSS) vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary web script or HTML via the (1) LAN_407 parameter to clock_menu.php, (2) "email article to a friend" field, (3) "submit news" field, or (4) avmsg parameter to usersettings.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16574 of 17672, showing 5 records out of 88360 total, starting on record 82866, ending on 82870