NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66089 | CVE-2005-0326 | pafiledb.php in PaFileDB 3.1 allows remote attackers to gain sensitive information via an invalid or missing action parameter, which reveals the path in an error message when it cannot include a login.php script. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
66857 | CVE-2005-1108 | The ij_untrusted_url function in JunkBuster 2.0.2-r2, with single-threaded mode enabled, allows remote attackers to overwrite the referrer field via a crafted HTTP request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
67113 | CVE-2005-1374 | Multiple cross-site scripting (XSS) vulnerabilities in Claroline 1.5.3 through 1.6 Release Candidate 1, and possibly Dokeos, allow remote attackers to inject arbitrary web script or HTML via (1) exercise_result.php, (2) exercice_submit.php, (3) agenda.php, (4) learningPathList.php, (5) learningPathAdmin.php, (6) learningPath.php, (7) userLog.php, (8) tool parameter to toolaccess_details.php, (9) data parameter to user_access_details.php, or (10) coursePath parameter to myagenda.php. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
67369 | CVE-2005-1644 | Cross-site scripting (XSS) vulnerability in guestbook.php for 1Two Livre d'Or 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) livreornom, (2) livreoremail, or (3) livreormessage parameters. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
68393 | CVE-2005-2704 | Firefox before 1.0.7 and Mozilla Suite before 1.7.12 allows remote attackers to spoof DOM objects via an XBL control that implements an internal XPCOM interface. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 16625 of 17672, showing 5 records out of 88360 total, starting on record 83121, ending on 83125