NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 66383 | CVE-2005-0632 | PHP remote file inclusion vulnerability in auth.php in PHPNews 1.2.4 and possibly 1.2.3, allows remote attackers to execute arbitrary PHP code via the path parameter. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
| 66639 | CVE-2005-0889 | Cross-site scripting (XSS) vulnerability in index.php for Dream4 Koobi CMS 4.2.3 allows remote attackers to inject arbitrary web script or HTML via the area parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 66895 | CVE-2005-1146 | ** DISPUTED ** NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in the login command in calendar.pl in CalendarScript 3.21 allows remote attackers to inject arbitrary web script or HTML via the username parameter, a different vulnerability than CVE-2005-1145. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 2127 | CVE-2008-2200 | Multiple cross-site scripting (XSS) vulnerabilities in Maian Weblog 4.0 allow remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter to admin/index.php in a blogs search action, the (2) msg_charset and (3) msg_header9 parameters to admin/inc/header.php, and the (4) keywords parameter to index.php in a search action. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-02 | View | |
| 67919 | CVE-2005-2217 | Dansie Shopping Cart stores the vars.dat file under the web root with insufficient access control, which might allow remote attackers to obtain sensitive information such as program variables. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 2830 of 17672, showing 5 records out of 88360 total, starting on record 14146, ending on 14150