NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3574  CVE-2008-3709  Multiple cross-site scripting (XSS) vulnerabilities in CyBoards PHP Lite 1.21 allow remote attackers to inject arbitrary web script or HTML via the (1) lOptionsOptions, (2) lNavAdminOptions, or (3) lNavReturn parameter to options.php; or the (4) lNavReturn parameter to subscribe.php.    4.3  Medium  2017-01-03  2008-09-05  View
69366  CVE-2005-3728  Idetix Software Systems Revize CMS stores conf/revize.xml under the web document root with insufficient access control, which allows remote attackers to obtain sensitive configuration information.    Medium  2017-01-03  2008-09-05  View
70390  CVE-2005-4801  Multiple cross-site request forgery (CSRF) vulnerabilities in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allow remote attackers to perform unauthorized actions as a logged-in user, as demonstrated by tricking the administrator to access a web page that performs a mod_info action in modify_gallery.php.    7.5  High  2017-01-03  2008-09-05  View
72694  CVE-2004-2317  Information leak in Mbedthis AppWeb HTTP server 1.0 through 1.1.2 allows remote attackers to obtain sensitive information via a user message that is generated when Mbedthis denies access.    Medium  2016-12-20  2008-09-05  View
72950  CVE-2004-2573  PHP remote file inclusion vulnerability in tables_update.inc.php in phpGroupWare 0.9.14.005 and earlier allows remote attackers to execute arbitrary PHP code via an external URL in the appdir parameter.    7.5  High  2016-12-20  2008-09-05  View

Page 17582 of 17672, showing 5 records out of 88360 total, starting on record 87906, ending on 87910

Actions