NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69078  CVE-2005-3417  phpBB 2.0.17 and earlier, when the register_long_arrays directive is disabled, allows remote attackers to modify global variables and bypass security mechanisms because PHP does not define the associated HTTP_* variables.    7.5  High  2017-01-03  2016-10-17  View
69079  CVE-2005-3418  Multiple cross-site scripting (XSS) vulnerabilities in phpBB 2.0.17 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) error_msg parameter to usercp_register.php, (2) forward_page parameter to login.php, and (3) list_cat parameter to search.php, which are not initialized as variables.    4.3  Medium  2017-01-03  2016-10-17  View
69080  CVE-2005-3419  SQL injection vulnerability in usercp_register.php in phpBB 2.0.17 allows remote attackers to execute arbitrary SQL commands via the signature_bbcode_uid parameter, which is not properly initialized.    7.5  High  2017-01-03  2016-10-17  View
69081  CVE-2005-3420  usercp_register.php in phpBB 2.0.17 allows remote attackers to modify regular expressions and execute PHP code via the signature_bbcode_uid parameter, as demonstrated by injecting an "e" modifier into a preg_replace statement.    7.5  High  2017-01-03  2016-10-17  View
69082  CVE-2005-3421  estcmd in Hyper Estraier 1.0.1 on Windows systems allows remote attackers to read unauthorized files via a crafted search request for a filename that contains Unicode characters.    Medium  2017-01-03  2008-11-11  View

Page 2840 of 17672, showing 5 records out of 88360 total, starting on record 14196, ending on 14200

Actions