NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 70163 | CVE-2005-4574 | Cross-site scripting (XSS) vulnerability in loader.cfm in PaperThin CommonSpot Content Server 4.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the bNewWindow parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 70164 | CVE-2005-4575 | PaperThin CommonSpot Content Server 4.5 and earlier allow remote attackers to obtain sensitive information via an invalid errmsg parameter to loader.cfm with a url parameter set to email-login-info.cfm, which leaks the full pathname in the resulting error message. | 2 | 5 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 70165 | CVE-2005-4576 | Multiple cross-site scripting (XSS) vulnerabilities in the UpdateEngine program in Fatwire UpdateEngine 6.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) COUNTRYNAME, (2) EMAIL, and (3) FUELAP_TEMPLATENAME parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 69655 | CVE-2005-4017 | property.php in Widget Property 1.1.19 allows remote attackers to obtain the full server path via an invalid lang value, which leaks the path in the resulting error message. | 2 | 5 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 70169 | CVE-2005-4580 | Cross-site scripting (XSS) vulnerability in Day Communique 4 allows remote attackers to inject arbitrary web script or HTML via the query parameter in a search. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-20 | View |
Page 2167 of 17672, showing 5 records out of 88360 total, starting on record 10831, ending on 10835