NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 66030 | CVE-2005-0267 | index.php in FlatNuke 2.5.1 allows remote attackers to create an administrator account via carriage returns and #10 in the url_avatar field, which is interpreted as a sensitive directive. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 66542 | CVE-2005-0792 | SQL injection vulnerability in ZPanel 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) uname parameter to index.php or (2) page parameter to zpanel.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 66798 | CVE-2005-1049 | Multiple cross-site scripting vulnerabilities in PostNuke 0.760-RC3 allow remote attackers to inject arbitrary web script or HTML via the (1) module parameter to admin.php or (2) op parameter to user.php. NOTE: the vendor reports that certain issues could not be reproduced for 760 RC3, or for .750. However, the op/user.php issue exists when the pnAntiCracker setting is disabled. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
| 70894 | CVE-2004-0456 | Stack-based buffer overflow in pavuk 0.9pl28, 0.9pl27, and possibly other versions allows remote web sites to execute arbitrary code via a long HTTP Location header. | 2 | 7.6 | High | 2017-07-18 | 2017-07-10 | View | |
| 71150 | CVE-2004-0723 | Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write certain data between applets from different domains via the "GET/Key" and "PUT/Key/Value" commands, aka "cross-site Java." | 2 | 6.4 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 2059 of 17672, showing 5 records out of 88360 total, starting on record 10291, ending on 10295