NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
838  CVE-2008-0867  Cross-site scripting (XSS) vulnerability in portal/server.pt in BEA AquaLogic Interaction 6.1 through MP1 and Plumtree Foundation 6.0 through SP1 allows remote attackers to inject arbitrary web script or HTML via the name parameter.    4.3  Medium  2017-01-03  2011-03-07  View
66374  CVE-2005-0623  Buffer overflow in RaidenHTTPD 1.1.32, and possibly other versions before 1.1.34, allows remote attackers to execute arbitrary code via a long URL.    7.5  High  2017-01-03  2016-10-17  View
1094  CVE-2008-1133  The Drupal.checkPlain function in Drupal 6.0 only escapes the first instance of a character in ECMAScript, which allows remote attackers to conduct cross-site scripting (XSS) attacks.    4.3  Medium  2017-01-03  2008-09-05  View
1350  CVE-2008-1393  Plone CMS 3.0.5, and probably other 3.x versions, places a base64 encoded form of the username and password in the __ac cookie for the admin account, which makes it easier for remote attackers to obtain administrative privileges by sniffing the network.    10  High  2017-01-03  2008-09-05  View
66886  CVE-2005-1137  Simple PHP Blog (sphpBlog) 0.4.0 allows remote attackers to obtain sensitive information via a direct request to sb_functions.php, which leaks the full pathname in a PHP error message.    Medium  2017-01-03  2016-10-17  View

Page 2142 of 17672, showing 5 records out of 88360 total, starting on record 10706, ending on 10710

Actions