NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 66678 | CVE-2005-0928 | Multiple cross-site scripting (XSS) vulnerabilities in PhotoPost PHP Pro 5.x allow remote attackers to inject arbitrary web script or HTML via the (1) cat, (2) password, (3) ppuser, (4) sort, or (5) si parameters to showgallery.php, the (6) ppuser, (7) sort, or (8) si parameters to showmembers.php, or (9) the photo parameter to slideshow.php. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 66679 | CVE-2005-0929 | SQL injection vulnerability in PhotoPost PHP Pro 5.x may allow remote attackers to execute arbitrary SQL commands via (1) the sl parameter to showmembers.php or (2) the photo parameter to showphoto.php. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 66680 | CVE-2005-0930 | Cross-site scripting (XSS) vulnerability in message.php in Chatness 2.5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via (1) the user field or (2) the message parameter to message.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 66681 | CVE-2005-0931 | PHP remote file inclusion vulnerability in The Includer 1.0 and 1.1 allows remote attackers to execute arbitrary PHP code. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 66682 | CVE-2005-0932 | Multiple SQL injection vulnerabilities in phpCOIN 1.2.1b and earlier allow remote attackers to execute arbitrary SQL commands (1) via the search engine, (2) the username or email fields in the "forgotten password" feature, or (3) the domain name in a package order. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View |
Page 2360 of 17672, showing 5 records out of 88360 total, starting on record 11796, ending on 11800