NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
70135  CVE-2005-4546  search.php in eggblog 2.0 allows remote attackers to obtain the full path via an invalid q parameter, as used by the Keyword and Search fields, possibly due to an SQL injection vulnerability.    7.8  High  2017-01-03  2011-03-07  View
4855  CVE-2008-5068  Multiple cross-site scripting (XSS) vulnerabilities in Kmita Gallery allow remote attackers to inject arbitrary web script or HTML via the (1) begin parameter to index.php and the (2) searchtext parameter to search.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-03  2012-10-30  View
70391  CVE-2005-4802  Flexbackup 1.2.1 and earlier allows local users to overwrite files and execute code via a symlink attack on temporary files. NOTE: the raw source referenced an incorrect candidate number; this is the correct number to use.    4.6  Medium  2017-01-03  2016-10-17  View
5111  CVE-2008-5333  SQL injection vulnerability in members.php in NitroTech 0.0.3a allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2009-08-19  View
70647  CVE-2004-0191  Mozilla before 1.4.2 executes Javascript events in the context of a new page while it is being loaded, allowing it to interact with the previous page (zombie document) and enable cross-domain and cross-site scripting (XSS) attacks, as demonstrated using onmousemove events.    6.8  Medium  2016-12-20  2016-10-17  View

Page 16719 of 17672, showing 5 records out of 88360 total, starting on record 83591, ending on 83595

Actions