NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
28349 | CVE-2015-7989 | Cross-site scripting (XSS) vulnerability in the user list table in WordPress before 4.3.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted e-mail address, a different vulnerability than CVE-2015-5714. | 2 | 3.5 | Low | 2017-07-18 | 2017-07-17 | View | |
66238 | CVE-2005-0481 | TrackerCam 5.12 and earlier allows remote attackers to read log files via the fn parameter in a direct request to the ComGetLogFile.php3 script. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
66494 | CVE-2005-0744 | The web GUI for Novell iChain 2.2 and 2.3 SP2 and SP3 allows attackers to hijack sessions and gain administrator privileges by (1) sniffing the connection on TCP port 51100 and replaying the authentication information or (2) obtaining and replaying the PCZQX02 authentication cookie from the browser. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
66750 | CVE-2005-1001 | PHP-Nuke 7.6 allows remote attackers to obtain sensitive information via direct requests to (1) the Surveys module with the file parameter set to comments or (2) 3D-Fantasy/theme.php, which leaks the full pathname of the web server in a PHP error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
67262 | CVE-2005-1524 | PHP file inclusion vulnerability in top_graph_header.php in Cacti 0.8.6d and possibly earlier versions allows remote attackers to execute arbitrary PHP code via the config[library_path] parameter. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 1689 of 17672, showing 5 records out of 88360 total, starting on record 8441, ending on 8445