NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 68378 | CVE-2005-2689 | Multiple cross-site scripting (XSS) vulnerabilities in PostNuke 0.760-RC4b allows remote attackers to inject arbitrary web script or HTML via (1) the moderate parameter to the Comments module or (2) htmltext parameter to html/user.php. | 2 | 2.6 | Low | 2017-01-03 | 2008-09-05 | View | |
| 68379 | CVE-2005-2690 | SQL injection vulnerability in the Downloads module in PostNuke 0.760-RC4b allows PostNuke administrators to execute arbitrary SQL commands via the show parameter to dl-viewdownload.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 68380 | CVE-2005-2691 | includes/common.php in RunCMS 1.2 and earlier calls the extract function with EXTR_OVERWRITE on HTTP POST variables, which allows remote attackers to overwrite arbitrary variables, possibly allowing execution of arbitrary code. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 68381 | CVE-2005-2692 | Multiple SQL injection vulnerabilities in RunCMS 1.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) addquery and (2) subquery parameters to the newbb plus module, the forum parameter to (3) newtopic.php, (4) edit.php, or (5) reply.php in the newbb plus module, or (6) the msg_id parameter to print.php in the messages module. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 68382 | CVE-2005-2693 | cvsbug in CVS 1.12.12 and earlier creates temporary files insecurely, which allows local users to overwrite arbitrary files and execute arbitrary code via a symlink attack. | 2 | 4.6 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 2700 of 17672, showing 5 records out of 88360 total, starting on record 13496, ending on 13500