NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 4458 | CVE-2008-4644 | hits.php in myWebland myStats allows remote attackers to bypass IP address restrictions via a modified X-Forwarded-For HTTP header. | 2 | 7.5 | High | 2017-01-03 | 2009-01-29 | View | |
| 69994 | CVE-2005-4396 | Cross-site scripting (XSS) vulnerability in admin/Default.asp in iCMS allows remote attackers to inject arbitrary web script or HTML via the LoginMSG parameter. NOTE: the provenance of this issue is unknown; the details were obtained solely from third party sources. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 4714 | CVE-2008-4925 | Multiple insecure method vulnerabilities in MW6 Technologies DataMatrix ActiveX control (DATAMATRIXLib.MW6DataMatrix, DataMatrix.dll) 3.0.0.1 allow remote attackers to overwrite arbitrary files via a full pathname argument to the (1) SaveAsBMP and (2) SaveAsWMF methods. | 2 | 9 | High | 2017-01-03 | 2009-05-13 | View | |
| 70250 | CVE-2005-4661 | The notifyendsubs cron job in Campsite before 2.3.3 sends an e-mail message containing a certain unencrypted MySQL password, which allows remote attackers to sniff the password. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 4970 | CVE-2008-5186 | ** DISPUTED ** The set_language_path function in geshi.php in Generic Syntax Highlighter (GeSHi) before 1.0.8.1 might allow remote attackers to conduct file inclusion attacks via crafted inputs that influence the default language path ($path variable). NOTE: this issue has been disputed by a vendor, stating that only a static value is used, so this is not a vulnerability in GeSHi. Separate CVE identifiers would be created for web applications that integrate GeSHi in a way that allows control of the default language path. | 2 | 7.5 | High | 2017-01-03 | 2009-08-11 | View |
Page 2484 of 17672, showing 5 records out of 88360 total, starting on record 12416, ending on 12420