NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68538  CVE-2005-2863  Cross-site scripting (XSS) vulnerability in openwebmail-main.pl in OpenWebMail 2.41 allows remote attackers to inject arbitrary web script or HTML via the sessionid parameter.    4.3  Medium  2017-01-03  2016-10-17  View
68539  CVE-2005-2864  URBAN 1.5.3_1 allows local users to overwrite arbitrary files via a symlink attack on the (1) high score or (2) save game files.    2.1  Low  2017-01-03  2016-10-17  View
68540  CVE-2005-2865  Multiple PHP remote file inclusion vulnerabilities in aMember Pro 2.3.4 allow remote attackers to execute arbitrary PHP code via the config[root_dir] parameter to (1) mysql.inc.php, (2) efsnet.inc.php, (3) theinternetcommerce.inc.php, (4) cdg.inc.php, (5) compuworld.inc.php, (6) directone.inc.php, (7) authorize_aim.inc.php, (8) beanstream.inc.php, (9) config.inc.php, (10) eprocessingnetwork.inc.php, (11) eway.inc.php, (12) linkpoint.inc.php, (13) logiccommerce.inc.php, (14) netbilling.inc.php, (15) payflow_pro.inc.php, (16) paymentsgateway.inc.php, (17) payos.inc.php, (18) payready.inc.php, or (19) plugnplay.inc.php.    7.5  High  2017-07-18  2017-07-10  View
68541  CVE-2005-2866  Mercora IMRadio 4.0.0.0 stores usernames and passwords in plaintext in the MercoraClientProfiles registry key, which allows local users to gain privileges.    4.6  Medium  2017-01-03  2008-09-05  View
68542  CVE-2005-2867  SQL injection vulnerability in BlueWhaleCRM allows remote attackers to execute arbitrary SQL commands via the Account ID field.    7.5  High  2017-01-03  2008-09-05  View

Page 2732 of 17672, showing 5 records out of 88360 total, starting on record 13656, ending on 13660

Actions