NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 70187 | CVE-2005-4598 | Cross-site scripting (XSS) vulnerability in home.php in OoApp Guestbook 2.1 allows remote attackers to inject arbitrary web script or HTML via the page parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 4907 | CVE-2008-5123 | SQL injection vulnerability in admin.php in CCleague Pro 1.2 allows remote attackers to execute arbitrary SQL commands via the u parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 70443 | CVE-2005-4854 | eZ publish 3.5 through 3.7 before 20050830 does not use a folder"s read permissions to restrict notifications, which allows remote authenticated users to obtain sensitive information about changes to content in arbitrary folders. | 2 | 5 | Medium | 2017-01-03 | 2015-07-28 | View | |
| 5163 | CVE-2008-5385 | enq in bos.rte.printers in IBM AIX 6.1.0 through 6.1.2, when a print queue is defined in /etc/qconfig, allows local users to delete arbitrary files via unspecified vectors. | 2 | 6.9 | Medium | 2017-01-03 | 2008-12-17 | View | |
| 5419 | CVE-2008-5677 | Unrestricted file upload vulnerability in Kwalbum 2.0.4, 2.0.2, and earlier, when PICS_PATH is located in the web root, allows remote authenticated users with upload capability to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file under items/, related to the ReplaceBadFilenameChars function in include/ItemAdder.php. NOTE: some of these details are obtained from third party information. | 2 | 7.1 | High | 2017-01-03 | 2009-01-29 | View |
Page 2593 of 17672, showing 5 records out of 88360 total, starting on record 12961, ending on 12965