NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
66383  CVE-2005-0632  PHP remote file inclusion vulnerability in auth.php in PHPNews 1.2.4 and possibly 1.2.3, allows remote attackers to execute arbitrary PHP code via the path parameter.    Medium  2017-01-03  2016-10-17  View
66639  CVE-2005-0889  Cross-site scripting (XSS) vulnerability in index.php for Dream4 Koobi CMS 4.2.3 allows remote attackers to inject arbitrary web script or HTML via the area parameter.    4.3  Medium  2017-01-03  2008-09-05  View
66895  CVE-2005-1146  ** DISPUTED ** NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in the login command in calendar.pl in CalendarScript 3.21 allows remote attackers to inject arbitrary web script or HTML via the username parameter, a different vulnerability than CVE-2005-1145.    4.3  Medium  2017-07-18  2017-07-10  View
2127  CVE-2008-2200  Multiple cross-site scripting (XSS) vulnerabilities in Maian Weblog 4.0 allow remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter to admin/index.php in a blogs search action, the (2) msg_charset and (3) msg_header9 parameters to admin/inc/header.php, and the (4) keywords parameter to index.php in a search action.    4.3  Medium  2017-01-03  2009-04-02  View
67919  CVE-2005-2217  Dansie Shopping Cart stores the vars.dat file under the web root with insufficient access control, which might allow remote attackers to obtain sensitive information such as program variables.    Medium  2017-01-03  2008-09-05  View

Page 2830 of 17672, showing 5 records out of 88360 total, starting on record 14146, ending on 14150

Actions