NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69372 | CVE-2005-3734 | Cross-site scripting (XSS) vulnerability in the "add content" page in phpMyFAQ 1.5.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) thema, (2) username, and (3) usermail parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4092 | CVE-2008-4242 | ProFTPD 1.3.1 interprets long commands from an FTP client as multiple commands, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and execute arbitrary FTP commands via a long ftp:// URI that leverages an existing session from the FTP client implementation in a web browser. | 2 | 6.8 | Medium | 2017-01-03 | 2009-03-06 | View | |
4604 | CVE-2008-4790 | The core upload module in Drupal 5.x before 5.11 allows remote authenticated users to bypass intended access restrictions and read "files attached to content" via unknown vectors. | 2 | 6 | Medium | 2017-01-03 | 2009-02-05 | View | |
70140 | CVE-2005-4551 | Cross-site scripting (XSS) vulnerability in sign.php in codegrrl SimpBook 1.0, when html_enable is on, allows remote attackers to inject arbitrary web script or HTML via the message parameter to index.php. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
5116 | CVE-2008-5338 | Cross-site scripting (XSS) vulnerability in info.php in Bandwebsite (aka Bandsite portal system) 1.5 allows remote attackers to inject arbitrary web script or HTML via the section parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-15 | View |
Page 17536 of 17672, showing 5 records out of 88360 total, starting on record 87676, ending on 87680