NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
70187  CVE-2005-4598  Cross-site scripting (XSS) vulnerability in home.php in OoApp Guestbook 2.1 allows remote attackers to inject arbitrary web script or HTML via the page parameter.    4.3  Medium  2017-01-03  2008-09-20  View
69933  CVE-2005-4335  ProjectForum 4.7.0 and earlier allows remote attackers to cause a denial of service (crash) via a crafted pageid parameter to admin/versions.html.    7.8  High  2017-01-03  2008-09-20  View
69944  CVE-2005-4346  Invalid SQL syntax error in blog.php in phpBB Blog 2.2.2 and earlier allows remote attackers to obtain the full path of the application via an invalid permalink parameter to index.php, which produces an invalid SQL query that leaks the full pathname in a SQL syntax error message. NOTE: this was originally claimed to be SQL injection, but a cleansing step strips all non-digit characters and leaves an empty permalink argument, which leads to the syntax error.    Medium  2017-01-03  2008-09-20  View
70200  CVE-2005-4611  SQL injection vulnerability in search.php in Free ClickBank 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the keywords parameter.    7.5  High  2017-01-03  2008-09-20  View
70201  CVE-2005-4612  Multiple SQL injection vulnerabilities in VUBB alpha rc1 allow remote attackers to execute arbitrary SQL commands via the (1) f parameter to viewforum.php, (2) t parameter to viewtopic.php, and (3) view parameter to usercp.php.    7.5  High  2017-01-03  2008-09-20  View

Page 2169 of 17672, showing 5 records out of 88360 total, starting on record 10841, ending on 10845

Actions