NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68167 | CVE-2005-2476 | Cross-site scripting (XSS) vulnerability in lost_passowrd.php in Naxtor Shopping Cart 1.0 allows remote attackers to inject arbitrary web script or HTML via the email parameter. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
68423 | CVE-2005-2734 | Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary web script or HTML via EXIF data, such as the Camera Model Tag. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
69191 | CVE-2005-3530 | Cross-site scripting (XSS) vulnerability in Antville 1.1 allows remote attackers to inject arbitrary web script or HTML via the notfound.skin error document. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
70983 | CVE-2004-0552 | Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device names such as (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, which can allow malicious code to bypass detection when it is installed, copied, or executed. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71239 | CVE-2004-0815 | The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to bypass the specified share restrictions and read, write, or list arbitrary files via "/.////" style sequences in pathnames. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 16737 of 17672, showing 5 records out of 88360 total, starting on record 83681, ending on 83685