NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69860 | CVE-2005-4262 | Cross-site scripting (XSS) vulnerability in the News module in Envolution allows remote attackers to inject arbitrary web script or HTML via the (1) startrow and (2) catid parameter. NOTE: this issue might be resultant from the SQL injection problem (CVE-2005-4263). | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
5092 | CVE-2008-5314 | Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the cli_check_jpeg_exploit, jpeg_check_photoshop, and jpeg_check_photoshop_8bim functions. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
71140 | CVE-2004-0713 | The remove method in a stateful Enterprise JavaBean (EJB) in BEA WebLogic Server and WebLogic Express version 8.1 through SP2, 7.0 through SP4, and 6.1 through SP6, does not properly check EJB permissions before unexporting a bean, which allows remote authenticated users to remove EJB objects from remote views before the security exception is thrown. | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-10 | View | |
5860 | CVE-2008-6129 | Directory traversal vulnerability in print.php in moziloWiki 1.0.1 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-19 | View | |
6116 | CVE-2008-6385 | Cross-site scripting (XSS) vulnerability in index.php in W3matter RevSense 1.0 allows remote attackers to inject arbitrary web script or HTML via the section parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-05-14 | View |
Page 16688 of 17672, showing 5 records out of 88360 total, starting on record 83436, ending on 83440