NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 67768 | CVE-2005-2059 | Multiple cross-site request forgery (CSRF) vulnerabilities in (1) addaddress.php, (2) toggleignore.php, (3) removeignore.php, and (4) removeaddress.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to modify settings as another user via a link or IMG tag. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 67769 | CVE-2005-2060 | Multiple HTTP Response Splitting vulnerabilities in (1) toggleshow.php, (2) togglecats.php, and (3) showprofile.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the Cat parameter. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 67770 | CVE-2005-2061 | Infopop UBB.Threads before 6.5.2 Beta allows remote attackers to include arbitrary files via the language parameter in a cookie followed by a null (%00) byte. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 67771 | CVE-2005-2062 | Multiple SQL injection vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to execute arbitrary SQL commands via the catid parameter to (1) default.asp or (2) buyersend.asp, (3) Administrator ID field in admin.asp, E-mail field in (4) advertiserstart.asp or (5) buyer.asp, or Keyword field in search.asp. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
| 67772 | CVE-2005-2063 | Multiple cross-site scripting (XSS) vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Title parameter to sendpassword.asp or (2) Keyword field in search.asp. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 2578 of 17672, showing 5 records out of 88360 total, starting on record 12886, ending on 12890