NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68308  CVE-2005-2619  Directory traversal vulnerability in kvarcve.dll in Autonomy (formerly Verity) KeyView SDK before 9.2.0, as used in Lotus Notes 6.5.4 and 7.0, allows remote attackers to delete arbitrary files via a (1) ZIP, (2) UUE or (3) TAR archive that contains a .. (dot dot) in the filename, which is not properly handled when generating a preview.    9.3  High  2017-07-18  2017-07-10  View
68309  CVE-2005-2620  grpWise.exe for Novell GroupWise client 5.5 through 6.5.2 stores the password in plaintext in memory, which allows attackers to obtain the password using a debugger or another mechanism to read process memory.    Medium  2017-07-18  2017-07-10  View
68310  CVE-2005-2621  index.php in ECW-Shop 6.0.2 allows remote attackers to obtain sensitive information via the (1) min or (2) max parameter with a """ (single quote), which reveals the path in an error message, possibly due to a SQL injection vulnerability.    Medium  2017-01-03  2016-10-17  View
68311  CVE-2005-2622  Cross-site scripting (XSS) vulnerability in index.php in ECW-Shop 6.0.2 allows remote attackers to inject arbitrary web script or HTML via the (1) max or (2) ctg parameter.    4.3  Medium  2017-01-03  2016-10-17  View
68312  CVE-2005-2623  ECW-Shop 6.0.2 allows remote attackers to reduce the total cost of their shopping cart by specifying a negative quantity for an item, which causes the price of the item to be subtracted from the total cost.    Medium  2017-01-03  2016-10-17  View

Page 2686 of 17672, showing 5 records out of 88360 total, starting on record 13426, ending on 13430

Actions