NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 66083 | CVE-2005-0320 | Multiple cross-site scripting vulnerabilities in MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) username parameter to login.html, (2) accountid parameter to accountsettings_add.html, or the (3) note, (4) title, and (5) location fields to calendar.html. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 66084 | CVE-2005-0321 | MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 allows remote authenticated users to gain sensitive information via an HTTP request to (1) calendar_d.html, (2) calendar_m.html, (3) calendar_w.html, or (4) calendar_y.html, which reveal the installation path. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
| 66085 | CVE-2005-0322 | MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 and Mail Server 7.6.4r with Icewarp Mail Server 5.3.2 uses weak encryption in the (1) users.cfg, (2) settings.cfg, (3) users.dat or (4) user.dat files, which allows local users to extract the passwords. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
| 66086 | CVE-2005-0323 | Cross-site scripting (XSS) vulnerability in Infinite Mobile Delivery Webmail 2.6 allows remote attackers to inject arbitrary web script or HTML via the URL. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 66087 | CVE-2005-0324 | Infinite Mobile Delivery Webmail 2.6 allows remote attackers to gain sensitive information via an HTTP request that contains invalid characters for a Windows foldername, which reveals the path in an error message. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 2241 of 17672, showing 5 records out of 88360 total, starting on record 11201, ending on 11205