NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6640  CVE-2008-6909  Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, does not sign all required data in requests, which has unspecified impact, probably related to man-in-the-middle attacks that modify critical data and allow remote attackers to impersonate other users and gain privileges.    6.5  Medium  2017-01-03  2009-08-19  View
72176  CVE-2004-1797  Cross-site scripting (XSS) vulnerability in search.php for FreznoShop 1.3.0 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter.    4.3  Medium  2017-07-18  2017-07-10  View
6896  CVE-2008-7165  Cross-site request forgery in cp06_wifi_m_nocifr.cgi in the administrator panel in TELECOM ITALIA Alice Gate2 Plus Wi-Fi allows remote attackers to hijack the authentication of administrators for requests that disable Wi-Fi encryption via certain values for the wlChannel and wlRadioEnable parameters.    6.8  Medium  2017-01-03  2009-09-09  View
72432  CVE-2004-2055  Cross-site scripting (XSS) vulnerability in search.php for PhpBB 2.0.4 and 2.0.9 allows remote attackers to inject arbitrary HTMl or web script via the search_author parameter.    4.3  Medium  2017-07-18  2017-07-10  View
7152  CVE-2011-0013  Multiple cross-site scripting (XSS) vulnerabilities in the HTML Manager Interface in Apache Tomcat 5.5 before 5.5.32, 6.0 before 6.0.30, and 7.0 before 7.0.6 allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the display-name tag.    4.3  Medium  2017-01-07  2016-08-22  View

Page 17096 of 17672, showing 5 records out of 88360 total, starting on record 85476, ending on 85480

Actions