NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67066  CVE-2005-1327  Cross-site scripting (XSS) vulnerability in pms.php for Woltlab Burning Board 2.3.1 PL2 and earlier allows remote attackers to inject arbitrary web script or HTML via the folderid parameter.    4.3  Medium  2017-01-03  2008-09-05  View
1786  CVE-2008-1846  The default configuration of SAP NetWeaver before 7.0 SP15 does not enable the "Always Use Secure HTML Editor" (aka Editor Security or Secure Editing) parameter, which allows remote attackers to conduct cross-site scripting (XSS) attacks by entering feedback for a file.    4.3  Medium  2017-01-03  2009-01-29  View
67322  CVE-2005-1595  CodeThat ShoppingCart 1.3.1 stores config.ini under the web root, which allows remote attackers to obtain sensitive information via a direct request.    Medium  2017-01-03  2008-09-05  View
2042  CVE-2008-2108  The GENERATE_SEED macro in PHP 4.x before 4.4.8 and 5.x before 5.2.5, when running on 64-bit systems, performs a multiplication that generates a portion of zero bits during conversion due to insufficient precision, which produces 24 bits of entropy and simplifies brute force attacks against protection mechanisms that use the rand and mt_rand functions.    7.5  High  2017-01-03  2012-10-30  View
67578  CVE-2005-1856  The CD-burning feature in backup-manager 0.5.8 and earlier uses a fixed filename in a world-writable directory for logging, which allows local users to overwrite files via a symlink attack.    2.1  Low  2017-01-03  2008-09-05  View

Page 17269 of 17672, showing 5 records out of 88360 total, starting on record 86341, ending on 86345

Actions