NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68661  CVE-2005-2997  Multiple directory traversal vulnerabilities in PHP Advanced Transfer Manager 1.30 allow remote attackers to read arbitrary files via ".." sequences in (1) the currentdir parameter to txt.php, or the current_dir parameter to (2) htm.php or (3) html.php.    Medium  2017-01-03  2008-09-05  View
3381  CVE-2008-3508  LiteNews 0.1 (aka 01), and possibly 1.2 and earlier, allows remote attackers to bypass authentication and gain administrative access by setting the admin cookie.    Medium  2017-01-03  2008-09-10  View
68917  CVE-2005-3255  The (1) cgiwrap and (2) php-cgiwrap packages before 3.9 in Debian GNU/Linux provide access to debugging CGIs under the web document root, which allows remote attackers to obtain sensitive information via direct requests to those CGIs.    Medium  2017-01-03  2008-09-05  View
69173  CVE-2005-3512  Cross-site scripting (XSS) vulnerability in index.php in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via the t parameter in a newreply action.    4.3  Medium  2017-01-03  2016-10-17  View
3893  CVE-2008-4033  Cross-domain vulnerability in Microsoft XML Core Services 3.0 through 6.0, as used in Microsoft Expression Web, Office, Internet Explorer, and other products, allows remote attackers to obtain sensitive information from another domain and corrupt the session state via HTTP request header fields, as demonstrated by the Transfer-Encoding field, aka "MSXML Header Request Vulnerability."    4.3  Medium  2017-01-03  2015-08-10  View

Page 1904 of 17672, showing 5 records out of 88360 total, starting on record 9516, ending on 9520

Actions