NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
70443  CVE-2005-4854  eZ publish 3.5 through 3.7 before 20050830 does not use a folder"s read permissions to restrict notifications, which allows remote authenticated users to obtain sensitive information about changes to content in arbitrary folders.    Medium  2017-01-03  2015-07-28  View
5163  CVE-2008-5385  enq in bos.rte.printers in IBM AIX 6.1.0 through 6.1.2, when a print queue is defined in /etc/qconfig, allows local users to delete arbitrary files via unspecified vectors.    6.9  Medium  2017-01-03  2008-12-17  View
5419  CVE-2008-5677  Unrestricted file upload vulnerability in Kwalbum 2.0.4, 2.0.2, and earlier, when PICS_PATH is located in the web root, allows remote authenticated users with upload capability to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file under items/, related to the ReplaceBadFilenameChars function in include/ItemAdder.php. NOTE: some of these details are obtained from third party information.    7.1  High  2017-01-03  2009-01-29  View
5675  CVE-2008-5944  Cross-site scripting (XSS) vulnerability in modules.php in NavBoard 16 (2.6.0) allows remote attackers to inject arbitrary web script or HTML via the module parameter.    2.6  Low  2017-01-03  2009-03-18  View
5931  CVE-2008-6200  Multiple cross-site scripting (XSS) vulnerabilities in Swiki 1.5 allow remote attackers to inject arbitrary web script or HTML via (1) the query string and (2) a new wiki entry.    4.3  Medium  2017-01-03  2009-02-26  View

Page 1900 of 17672, showing 5 records out of 88360 total, starting on record 9496, ending on 9500

Actions