NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
5861  CVE-2008-6130  Cross-site scripting (XSS) vulnerability in index.php in moziloWiki 1.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) action and (2) page parameters.    4.3  Medium  2017-01-03  2009-08-19  View
6117  CVE-2008-6386  Cross-site scripting (XSS) vulnerability in showads.php in Z1Exchange 1.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter.    4.3  Medium  2017-01-03  2010-06-15  View
72165  CVE-2004-1786  PortalApp places user credentials under the web root with insufficient access control, which allows remote attackers to gain access to sensitive information via a direct request to 8275.mdb.    Medium  2017-07-18  2017-07-10  View
6885  CVE-2008-7154  Docebo 3.5.0.3 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) class/class.conf_fw.php, (2) class.module/class.event_manager.php, (3) lib/lib.domxml5.php, or (4) menu/menu_over.php in doceboCore/; or (5) class/class.conf_cms.php, (6) lib/lib.compose.php, (7) modules/chat/teleskill.php, or (8) class/class.admin_menu_cms.php in doceboCms/; which reveals the installation path in an error message.    Medium  2017-01-03  2009-09-03  View
7141  CVE-2011-0002  libuser before 0.57 uses a cleartext password value of (1) !! or (2) x for new LDAP user accounts, which makes it easier for remote attackers to obtain access by specifying one of these values.    6.4  Medium  2017-01-07  2016-12-07  View

Page 16724 of 17672, showing 5 records out of 88360 total, starting on record 83616, ending on 83620

Actions