NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67066 | CVE-2005-1327 | Cross-site scripting (XSS) vulnerability in pms.php for Woltlab Burning Board 2.3.1 PL2 and earlier allows remote attackers to inject arbitrary web script or HTML via the folderid parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
1786 | CVE-2008-1846 | The default configuration of SAP NetWeaver before 7.0 SP15 does not enable the "Always Use Secure HTML Editor" (aka Editor Security or Secure Editing) parameter, which allows remote attackers to conduct cross-site scripting (XSS) attacks by entering feedback for a file. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
67322 | CVE-2005-1595 | CodeThat ShoppingCart 1.3.1 stores config.ini under the web root, which allows remote attackers to obtain sensitive information via a direct request. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2042 | CVE-2008-2108 | The GENERATE_SEED macro in PHP 4.x before 4.4.8 and 5.x before 5.2.5, when running on 64-bit systems, performs a multiplication that generates a portion of zero bits during conversion due to insufficient precision, which produces 24 bits of entropy and simplifies brute force attacks against protection mechanisms that use the rand and mt_rand functions. | 2 | 7.5 | High | 2017-01-03 | 2012-10-30 | View | |
67578 | CVE-2005-1856 | The CD-burning feature in backup-manager 0.5.8 and earlier uses a fixed filename in a world-writable directory for logging, which allows local users to overwrite files via a symlink attack. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View |
Page 17269 of 17672, showing 5 records out of 88360 total, starting on record 86341, ending on 86345