NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 67558 | CVE-2005-1834 | SQL injection vulnerability in login.asp in NEXTWEB (i)Site allows remote attackers to execute arbitrary SQL commands and bypass authentication via the password field. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 67559 | CVE-2005-1835 | NEXTWEB (i)Site stores databases under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to databases/Users.mdb. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 67560 | CVE-2005-1836 | NEXTWEB (i)Site allows remote attackers to cause a denial of service (error 500) via a crafted HTTP request, possibly involving wildcard requests for .jsp files. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 67561 | CVE-2005-1837 | Fortinet firewall running FortiOS 2.x contains a hardcoded username with the password set to the serial number, which allows local users with console access to gain privileges. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View | |
| 67562 | CVE-2005-1838 | Multiple cross-site scripting vulnerabilities in castnewPost.asp in Liberum Help Desk 0.97.3 allow remote attackers to inject arbitrary web script or HTML via the (1) Email, (2) Title, or (3) Description fields. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 2536 of 17672, showing 5 records out of 88360 total, starting on record 12676, ending on 12680