NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67066 | CVE-2005-1327 | Cross-site scripting (XSS) vulnerability in pms.php for Woltlab Burning Board 2.3.1 PL2 and earlier allows remote attackers to inject arbitrary web script or HTML via the folderid parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
1786 | CVE-2008-1846 | The default configuration of SAP NetWeaver before 7.0 SP15 does not enable the "Always Use Secure HTML Editor" (aka Editor Security or Secure Editing) parameter, which allows remote attackers to conduct cross-site scripting (XSS) attacks by entering feedback for a file. | 2 | 4.3 | Medium | 2017-01-03 | 2009-01-29 | View | |
67322 | CVE-2005-1595 | CodeThat ShoppingCart 1.3.1 stores config.ini under the web root, which allows remote attackers to obtain sensitive information via a direct request. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2298 | CVE-2008-2379 | Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
2554 | CVE-2008-2648 | Unrestricted file upload vulnerability in upload/uploader.html in meBiblio 0.4.7 allows remote attackers to execute arbitrary code by uploading a .php file, then accessing it via a direct request to the files/ directory. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 17465 of 17672, showing 5 records out of 88360 total, starting on record 87321, ending on 87325