NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
240  CVE-2008-0255  SQL injection vulnerability in archive.php in iGaming 1.5, and 1.3.1 and earlier, allows remote attackers to execute arbitrary SQL commands via the section parameter.    7.5  High  2017-01-03  2008-09-05  View
65776  CVE-2006-7233  Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfire) 2.6.0, and possibly other versions before 3.5.3, allows remote attackers to inject arbitrary web script or HTML via the url parameter.    4.3  Medium  2016-12-20  2009-02-06  View
496  CVE-2008-0521  Multiple directory traversal vulnerabilities in Bubbling Library 1.32 allow remote attackers to read arbitrary files via a .. (dot dot) in the uri parameter to dispatcher.php in (1) examples/dispatcher/framework/, (2) examples/dispatcher/, (3) examples/wizard/, and (4) PHP/, different vectors than CVE-2008-0545.    Medium  2017-01-03  2008-09-05  View
66032  CVE-2005-0269  The file extension check in GNUBoard 3.40 and earlier only verifies extensions that contain all lowercase letters, which allows remote attackers to upload arbitrary files via file extensions that include uppercase letters.    7.5  High  2017-07-18  2017-07-10  View
752  CVE-2008-0781  Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin 1.5.8 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) message, (2) pagename, and (3) target filenames.    4.3  Medium  2017-01-03  2011-03-07  View

Page 16585 of 17672, showing 5 records out of 88360 total, starting on record 82921, ending on 82925

Actions