NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 66528 | CVE-2005-0778 | PhotoPost PHP 5.0 RC3 does not fully verify that an uploaded file is an image file, which allows remote attackers to inject arbitrary Javascript by uploading non-image files with an image extension such as .gif. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 66529 | CVE-2005-0779 | PlatinumFTP 1.0.18, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via multiple connection attempts with a (backslash) in the username. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 66530 | CVE-2005-0780 | paFileDB 3.1 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) auth.php, (2) login.php, (3) category.php, (4) file.php, (5) team.php, (6) license.php, (7) custom.php, (8) admins.php, or (9) backupdb.php, which reveal the path in a PHP error message. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 66531 | CVE-2005-0781 | SQL injection vulnerability in (1) viewall.php and (2) category.php in paFileDB 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the start parameter to pafiledb.php. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 66532 | CVE-2005-0782 | Cross-site scripting (XSS) vulnerability in (1) viewall.php and (2) category.php for paFileDB 3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the start parameter to pafiledb.php. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 2330 of 17672, showing 5 records out of 88360 total, starting on record 11646, ending on 11650