NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
66279  CVE-2005-0522  Chat Anywhere 2.72a stores sensitive information such as passwords in plaintext in the .INI file for a chatroom, which allows local users to gain privileges.    4.6  Medium  2017-01-03  2008-09-05  View
999  CVE-2008-1038  PHP remote file inclusion vulnerability in mod/mod.extmanager.php in DBHcms 1.1.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the extmanager_install parameter.    6.8  Medium  2017-01-03  2008-09-05  View
66535  CVE-2005-0785  Cross-site scripting (XSS) vulnerability in usersrecentposts in YaBB 2.0 rc1 allows remote attackers to inject arbitrary web script or HTML via the username parameter.    4.3  Medium  2017-07-18  2017-07-10  View
1255  CVE-2008-1296  Multiple cross-site scripting (XSS) vulnerabilities in EncapsGallery 1.11.2 allow remote attackers to inject arbitrary web script or HTML via the file parameter to (1) watermark.php and (2) catalog_watermark.php in core/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-03  2008-09-05  View
67559  CVE-2005-1835  NEXTWEB (i)Site stores databases under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to databases/Users.mdb.    Medium  2017-01-03  2016-10-17  View

Page 16788 of 17672, showing 5 records out of 88360 total, starting on record 83936, ending on 83940

Actions