NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 2125 | CVE-2008-2198 | PHP remote file inclusion vulnerability in kmitaadmin/kmitat/htmlcode.php in Kmita Tellfriend 2.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the file parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2009-01-29 | View | |
| 67917 | CVE-2005-2215 | Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.x before 1.4.6 and 1.5 before 1.5beta3 allows remote attackers to inject arbitrary web script or HTML via a parameter in the page move template, a different vulnerability than CVE-2005-1888. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 2637 | CVE-2008-2743 | Cross-site scripting (XSS) vulnerability in the embedded web server in Xerox 4110, 4590, and 4595 Copier/Printers allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 68173 | CVE-2005-2482 | The StateToOptions function in msfweb in Metasploit Framework 2.4 and earlier, when running with the -D option (defanged mode), allows attackers to modify temporary environment variables before the "_Defanged" environment option is checked when processing the Exploit command. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 69965 | CVE-2005-4367 | Cross-site scripting (XSS) vulnerability in register_domain.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the "Domain Availability" field. NOTE: this issue was later reported to affect CONTROLzx (renamed from DRZES) 3.3.4. | 2 | 5.8 | Medium | 2017-01-03 | 2008-09-20 | View |
Page 2760 of 17672, showing 5 records out of 88360 total, starting on record 13796, ending on 13800