NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 64840 | CVE-2006-6279 | index.php in @lex Guestbook 4.0.1 allows remote attackers to obtain sensitive information via a skin parameter referencing a nonexistent skin, which reveals the installation path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 329 | CVE-2008-0351 | admin/config.php in Evilsentinel 1.0.9 and earlier allows remote attackers to bypass the CAPTCHA test by omitting the es_security_captcha parameter and not invoking captcha.php. | 2 | 5 | Medium | 2017-01-03 | 2009-09-15 | View | |
| 65865 | CVE-2005-0085 | Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTML via the config parameter, which is not properly sanitized before it is displayed in an error message. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 66121 | CVE-2005-0360 | The Microsoft Log Sink Class ActiveX control in pkmcore.dll is marked as "safe for scripting" for Internet Explorer, which allows remote attackers to create or append to arbitrary files. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 66633 | CVE-2005-0883 | Multiple cross-site scripting (XSS) vulnerabilities in base.php for DigitalHive 2.0 allow remote attackers to inject arbitrary web script or HTML via (1) the mt parameter to the membres.php page or (2) the -afs-1- query string to the msg.php page. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 2625 of 17672, showing 5 records out of 88360 total, starting on record 13121, ending on 13125