NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
66843  CVE-2005-1094  FTP Now 2.6.14 stores usernames and passwords in plaintext in sites.xml, which is world-readable, which allows local users to gain privileges.    4.6  Medium  2017-07-18  2017-07-10  View
1563  CVE-2008-1621  Multiple cross-site scripting (XSS) vulnerabilities in GeeCarts allow remote attackers to inject arbitrary web script or HTML via the id parameter to (1) show.php, (2) search.php, and (3) view.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-03  2008-09-05  View
67099  CVE-2005-1360  PHP remote file inclusion vulnerability in error.php in GrayCMS 1.1 allows remote attackers to execute arbitrary PHP code by modifying the path_prefix parameter to reference a URL on a remote web server that contains the code.    7.5  High  2017-07-18  2017-07-10  View
1819  CVE-2008-1880  The default configuration of Firebird before 2.0.3.12981.0-r6 on Gentoo Linux sets the ISC_PASSWORD environment variable before starting Firebird, which allows remote attackers to bypass SYSDBA authentication and obtain sensitive database information via an empty password.    Medium  2017-01-03  2008-09-05  View
67355  CVE-2005-1630  Unknown vulnerability in Attachment Mod before 2.3.13, related to a "serious issue with realnames," has unknown impact and attack vectors.    7.5  High  2017-01-03  2008-09-10  View

Page 2186 of 17672, showing 5 records out of 88360 total, starting on record 10926, ending on 10930

Actions