NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68712  CVE-2005-3048  Directory traversal vulnerability in index.php in PhpMyFaq 1.5.1 allows remote attackers to read arbitrary files or include arbitrary PHP files via a .. (dot dot) in the LANGCODE parameter, which also allows direct code injection via the User Agent field in a request packet, which can be activated by using LANGCODE to reference the user tracking data file.    6.4  Medium  2017-01-03  2016-10-17  View
3432  CVE-2008-3562  Directory traversal vulnerability in index.php in the Contact module in Chupix CMS 0.1.0, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mods parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    5.1  Medium  2017-01-03  2008-09-05  View
68968  CVE-2005-3306  Cross-site scripting (XSS) vulnerability in index.php for FlatNuke 2.5.6 allows remote attackers to inject arbitrary web script or HTML via the user parameter in a profile operation, a different vulnerability than CVE-2005-2814. NOTE: it is possible that this XSS is a resultant vulnerability of CVE-2005-3307.    4.3  Medium  2017-01-03  2016-10-17  View
3688  CVE-2008-3826  Unspecified vulnerability in Condor before 7.0.5 allows attackers to execute jobs as other users via unknown vectors.    4.6  Medium  2017-01-03  2011-03-07  View
3944  CVE-2008-4086  SQL injection vulnerability in index.php in Reciprocal Links Manager 1.1 allows remote attackers to execute arbitrary SQL commands via the site parameter in an open action.    7.5  High  2017-01-03  2011-03-07  View

Page 2464 of 17672, showing 5 records out of 88360 total, starting on record 12316, ending on 12320

Actions