NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 67023 | CVE-2005-1284 | The addnew script in Argosoft Mail Server Pro 1.8.7.6 allows remote attackers to create arbitrary accounts, even if "Allow Creation of Accounts From the Web Interface" is disabled, via a direct HTTP POST request. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 67024 | CVE-2005-1285 | Cross-site scripting (XSS) vulnerability in thread.php in WoltLab Burning Board 2.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the hilight parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 67025 | CVE-2005-1286 | Unquoted Windows search path vulnerability in BitDefender 8 allows local users to prevent BitDefender from starting by creating a malicious C:program.exe, possibly due to the lack of quoting of the full pathname when executing a process. | 2 | 1.2 | Low | 2017-01-03 | 2016-10-17 | View | |
| 67026 | CVE-2005-1287 | Multiple SQL injection vulnerabilities in BK Forum 4.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to member.asp, (2) forum parameter to forum.asp, or (3) various parameters in register.asp. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 67027 | CVE-2005-1288 | inc_login_check.asp ACS Blog 0.8 through 1.1.3 allows remote attackers to gain administrator privileges via the "in" value in a cookie. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View |
Page 2429 of 17672, showing 5 records out of 88360 total, starting on record 12141, ending on 12145