NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
3963  CVE-2008-4105  JRequest in Joomla! 1.5 before 1.5.7 does not sanitize variables that were set with JRequest::setVar, which allows remote attackers to conduct "variable injection" attacks and have unspecified other impact.    7.5  High  2017-01-03  2009-08-19  View
69499  CVE-2005-3861  PHP remote file inclusion vulnerability in content.php in phpGreetz 0.99 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the content parameter.    7.5  High  2017-01-03  2011-08-23  View
4219  CVE-2008-4393  Cross-site scripting (XSS) vulnerability in VeriSign Kontiki Delivery Management System (DMS) 5.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the action parameter to zodiac/servlet/zodiac.    4.3  Medium  2017-01-03  2008-10-07  View
69755  CVE-2005-4147  The TCLHTTPd service in Lyris ListManager before 8.9b allows remote attackers to obtain source code for arbitrary .tml (TCL) files via (1) a request with a trailing null byte (%00), which might also require (2) an authentication bypass step that involves a username with a trailing "@" characters.    6.5  Medium  2017-01-03  2011-03-07  View
4475  CVE-2008-4661  Cross-site scripting (XSS) vulnerability in the Page Improvements (sm_pageimprovements) 1.1.0 and earlier extension for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-03  2011-03-07  View

Page 2639 of 17672, showing 5 records out of 88360 total, starting on record 13191, ending on 13195

Actions