NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65008  CVE-2006-6463  Unrestricted file upload vulnerability in admin/add.php in Midicart allows remote authenticated users to upload arbitrary .php files, and possibly other files, to the images/ directory under the web root.    6.5  Medium  2016-12-20  2008-09-05  View
241  CVE-2008-0256  Multiple SQL injection vulnerabilities in Matteo Binda ASP Photo Gallery 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) Imgbig.asp, (b) thumb.asp, and (c) thumbricerca.asp and the (2) ricerca parameter to (d) thumbricerca.asp.    7.5  High  2017-01-03  2008-09-05  View
67057  CVE-2005-1318  Cross-site scripting (XSS) vulnerability in Horde Forwards E-Mail Forwarding Manager before 2.2.2 allows remote attackers to inject arbitrary web script or HTML via the parent"s frame page title.    4.3  Medium  2017-01-03  2008-09-05  View
67313  CVE-2005-1586  Quick.Forum 2.1.6 stores potentially sensitive information such as usernames, banned IP addresses, censored words, and backups under the web document root, which allows remote attackers to obtain that information via a direct request to (1) db/users.txt, (2) db/banList.txt, (3) db/censureWords.txt, or (4) backup files.    Medium  2017-01-03  2008-09-05  View
67569  CVE-2005-1847  Multiple buffer overflows in YaMT before 0.5_2 allow attackers to execute arbitrary code via the (1) rename or (2) sort options.    7.5  High  2017-01-03  2008-09-05  View

Page 17553 of 17672, showing 5 records out of 88360 total, starting on record 87761, ending on 87765

Actions