NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68013 | CVE-2005-2312 | management.php in Realnode Emilda 1.2.2 and earlier allows remote attackers to perform actions as other users by modifying the user_id parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
2733 | CVE-2008-2839 | Cross-site scripting (XSS) vulnerability in the search module in Traindepot 0.1 allows remote attackers to inject arbitrary web script or HTML via the query parameter to index.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
68525 | CVE-2005-2850 | SlimFTPd 3.17 allows remote attackers to cause a denial of service (crash) via certain (1) USER and (2) PASS commands, possibly due to a buffer overflow or off-by-one error. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
69805 | CVE-2005-4207 | SQL injection vulnerability in BTGrup Admin WebController Script allows remote attackers to execute SQL commands via the (1) Username and (2) Password fields. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
70061 | CVE-2005-4463 | WordPress before 1.5.2 allows remote attackers to obtain sensitive information via a direct request to (1) wp-includes/vars.php, (2) wp-content/plugins/hello.php, (3) wp-admin/upgrade-functions.php, (4) wp-admin/edit-form.php, (5) wp-settings.php, and (6) wp-admin/edit-form-comment.php, which leaks the path in an error message related to undefined functions or failed includes. NOTE: the wp-admin/menu-header.php vector is already covered by CVE-2005-2110. NOTE: the vars.php, edit-form.php, wp-settings.php, and edit-form-comment.php vectors were also reported to affect WordPress 2.0.1. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 17132 of 17672, showing 5 records out of 88360 total, starting on record 85656, ending on 85660