NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67060 | CVE-2005-1321 | Cross-site scripting (XSS) vulnerability in Horde Vacation module before 2.2.2 allows remote attackers to inject arbitrary web script or HTML via the parent"s frame page title. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
1780 | CVE-2008-1840 | SQL injection vulnerability in upload.php in Coppermine Photo Gallery (CPG) 1.4.16 and earlier allows remote authenticated users or user-assisted remote HTTP servers to execute arbitrary SQL commands via the Content-Type HTTP response header provided by the HTTP server that is used for an upload. | 2 | 6.5 | Medium | 2017-01-03 | 2009-07-29 | View | |
67828 | CVE-2005-2119 | The MIDL_user_allocate function in the Microsoft Distributed Transaction Coordinator (MSDTC) proxy (MSDTCPRX.DLL) allocates a 4K page of memory regardless of the required size, which allows attackers to overwrite arbitrary memory locations using an incorrect size value that is provided to the NdrAllocate function, which writes management data to memory outside of the allocated buffer. | 2 | 5 | Medium | 2017-01-03 | 2008-09-10 | View | |
68084 | CVE-2005-2392 | Cross-site scripting (XSS) vulnerability in index.php for CMSimple 2.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter in the search function. | 2 | 4.3 | Medium | 2017-01-03 | 2013-08-03 | View | |
3060 | CVE-2008-3177 | Sophos virus detection engine 2.75 on Linux and Unix, as used in Sophos Email Appliance, Pure Message for Unix, and Sophos Anti-Virus Interface (SAVI), allows remote attackers to cause a denial of service (engine crash) via zero-length MIME attachments. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 17244 of 17672, showing 5 records out of 88360 total, starting on record 86216, ending on 86220