NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64840  CVE-2006-6279  index.php in @lex Guestbook 4.0.1 allows remote attackers to obtain sensitive information via a skin parameter referencing a nonexistent skin, which reveals the installation path in an error message.    Medium  2016-12-20  2011-03-07  View
329  CVE-2008-0351  admin/config.php in Evilsentinel 1.0.9 and earlier allows remote attackers to bypass the CAPTCHA test by omitting the es_security_captcha parameter and not invoking captcha.php.    Medium  2017-01-03  2009-09-15  View
65865  CVE-2005-0085  Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTML via the config parameter, which is not properly sanitized before it is displayed in an error message.    6.8  Medium  2017-07-18  2017-07-10  View
66121  CVE-2005-0360  The Microsoft Log Sink Class ActiveX control in pkmcore.dll is marked as "safe for scripting" for Internet Explorer, which allows remote attackers to create or append to arbitrary files.    Medium  2017-01-03  2008-09-05  View
66633  CVE-2005-0883  Multiple cross-site scripting (XSS) vulnerabilities in base.php for DigitalHive 2.0 allow remote attackers to inject arbitrary web script or HTML via (1) the mt parameter to the membres.php page or (2) the -afs-1- query string to the msg.php page.    4.3  Medium  2017-07-18  2017-07-10  View

Page 2625 of 17672, showing 5 records out of 88360 total, starting on record 13121, ending on 13125

Actions