NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67900  CVE-2005-2198  PHP remote file inclusion vulnerability in lang.php in SPiD before 1.3.1 allows remote attackers to execute arbitrary code via the lang_path parameter.    7.5  High  2017-01-03  2008-09-05  View
2620  CVE-2008-2722  Menalto Gallery before 2.2.5 allows remote attackers to bypass permissions for sub-albums via a ZIP archive.    7.5  High  2017-01-03  2009-04-08  View
68156  CVE-2005-2465  Cross-site scripting (XSS) vulnerability in pm.php in PCXP/TOPPE CMS allows remote attackers to inject arbitrary web script or HTML via the msg variable.    5.8  Medium  2017-01-03  2016-10-17  View
2876  CVE-2008-2982  Multiple directory traversal vulnerabilities in HomePH Design 2.10 RC2, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) thumb_template parameter to (a) admin/templates/template_thumbnail.php, and the (2) language parameter to (b) account/account.php, (c) downloads/downloads.php, (d) forum/forum.php, (e) fotogalerie/delete.php, and (f) fotogalerie/fotogalerie.php in admin/features/.    6.8  Medium  2017-01-03  2008-09-05  View
3132  CVE-2008-3249  The client in Lenovo System Update before 3.14 does not properly validate the certificate when establishing an SSL connection, which allows remote attackers to install arbitrary packages via an SSL certificate whose X.509 headers match a public certificate used by IBM.    5.1  Medium  2017-01-03  2009-04-08  View

Page 2053 of 17672, showing 5 records out of 88360 total, starting on record 10261, ending on 10265

Actions