NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65981 | CVE-2005-0217 | SQL injection vulnerability in index.php in Invision Community Blog allows remote attackers to execute arbitrary SQL commands via the eid parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
66237 | CVE-2005-0480 | Cross-site scripting (XSS) vulnerability in TrackerCam 5.12 and earlier allows remote attackers to inject arbitrary HTML or web script via the login request, which is recorded in a log file but not properly handled when the administrator views the log file. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
66493 | CVE-2005-0743 | The custom avatar uploading feature (uploader.php) for XOOPS 2.0.9.2 and earlier allows remote attackers to upload arbitrary PHP scripts, whose file extensions are not filtered. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
66749 | CVE-2005-1000 | Multiple cross-site scripting (XSS) vulnerabilities in PHP-Nuke 7.6 allow remote attackers to inject arbitrary web script or HTML via (1) the bid parameter to the EmailStats op in banners.pgp, (2) the ratenum parameter in the TopRated and MostPopular actions in the Web_Links module, (3) the ttitle parameter in the viewlinkdetails, viewlinkeditorial, viewlinkcomments, and ratelink actions in the Web_Links module, or (4) the username parameter in the Your_Account module. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
70589 | CVE-2004-0125 | The jail system call in FreeBSD 4.x before 4.10-RELEASE does not verify that an attempt to manipulate routing tables originated from a non-jailed process, which could allow local users to modify the routing table. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View |
Page 17303 of 17672, showing 5 records out of 88360 total, starting on record 86511, ending on 86515