NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
68296 | CVE-2005-2607 | PHP file include vulnerability in download.php in PHPSimplicity Simplicity oF Upload before 1.3.1 allows remote attackers to include arbitrary local and remote files via the language parameter and a terminating null ("%00") characters. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
3272 | CVE-2008-3391 | Multiple cross-site scripting (XSS) vulnerabilities in Web Wiz Forum 9.5 allow remote attackers to inject arbitrary web script or HTML via the mode parameter to (1) admin_group_details.asp and (2) admin_category_details.asp. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
68808 | CVE-2005-3146 | StoreBackup before 1.19 allows local users to perform unauthorized operations on arbitrary files via a symlink attack on temporary files. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View | |
70344 | CVE-2005-4755 | BEA WebLogic Server and WebLogic Express 8.1 SP3 and earlier (1) stores the private key passphrase (CustomTrustKeyStorePassPhrase) in cleartext in nodemanager.config; or, during domain creation with the Configuration Wizard, renders an SSL private key passphrase in cleartext (2) on a terminal or (3) in a log file, which might allow local users to obtain cryptographic keys. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View | |
74440 | CVE-2003-1370 | Multiple cross-site scripting (XSS) vulnerabilities in Nuked-Klan 1.2b allow remote attackers to inject arbitrary HTML or web script via (1) the Author field in the Guestbook module, (2) the Titre or Pseudo fields in the Forum module, or (3) "La Tribune Libre" in the Shoutbox module. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 17306 of 17672, showing 5 records out of 88360 total, starting on record 86526, ending on 86530