NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67819 | CVE-2005-2110 | WordPress 1.5.1.2 and earlier allows remote attackers to obtain sensitive information via (1) a direct request to menu-header.php or a "1" value in the feed parameter to (2) wp-atom.php, (3) wp-rss.php, or (4) wp-rss2.php, which reveal the path in an error message. NOTE: vector [1] was later reported to also affect WordPress 2.0.1. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
2795 | CVE-2008-2901 | Multiple SQL injection vulnerabilities in Haudenschilt Family Connections CMS (FCMS) 1.4 allow remote authenticated users to execute arbitrary SQL commands via the (1) address parameter to addressbook.php, the (2) getnews parameter to familynews.php, and the (3) poll_id parameter to home.php in a results action. | 2 | 6.5 | Medium | 2017-01-03 | 2009-04-08 | View | |
68587 | CVE-2005-2919 | libclamav/fsg.c in Clam AntiVirus (ClamAV) before 0.87 allows remote attackers to cause a denial of service (infinite loop) via a crafted FSG packed executable. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
69611 | CVE-2005-3973 | Multiple cross-site scripting (XSS) vulnerabilities in Drupal 4.5.0 through 4.5.5 and 4.6.0 through 4.6.3 allow remote attackers to inject arbitrary web script or HTML via various HTML tags and values, such as the (1) legend tag and the value parameter used in (2) label and (3) input tags, possibly due to an incomplete blacklist. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4587 | CVE-2008-4773 | Directory traversal vulnerability in main/main.php in QuestCMS allows remote attackers to read arbitrary local files via a .. (dot dot) in the theme parameter. | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 16921 of 17672, showing 5 records out of 88360 total, starting on record 84601, ending on 84605