NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69698  CVE-2005-4060  Cross-site scripting (XSS) vulnerability in search.asp in rwAuction Pro 4.0 and 5.0 allows remote attackers to inject arbitrary web script or HTML via the searchtxt parameter.    4.3  Medium  2017-01-03  2011-03-07  View
4418  CVE-2008-4602  Directory traversal vulnerability in index.php in Post Affiliate Pro 2.0 allows remote authenticated users to read and possibly execute arbitrary local files via a .. (dot dot) in the md parameter.    6.5  Medium  2017-01-03  2009-02-21  View
69954  CVE-2005-4356  SQL injection vulnerability in UStore allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password fields. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-03  2011-03-07  View
4674  CVE-2008-4885  SQL injection vulnerability in tr1.php in YourFreeWorld Scrolling Text Ads Script allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-03  2013-07-11  View
70210  CVE-2005-4621  Cross-site scripting (XSS) vulnerability in the editavatar page in vBulletin 3.5.1 allows remote attackers to inject arbitrary web script or HTML via a URL in the remote avatar url field, in which the URL generates a parsing error, and possibly requiring a trailing extension such as .jpg.    4.3  Medium  2017-01-03  2008-09-20  View

Page 2109 of 17672, showing 5 records out of 88360 total, starting on record 10541, ending on 10545

Actions