NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 69456 | CVE-2005-3818 | Multiple cross-site scripting (XSS) vulnerabilities in vTiger CRM 4.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) various input fields, including the contact, lead, and first or last name fields, (2) the record parameter in a DetailView action in the Leads module for index.php, (3) the $_SERVER['PHP_SELF'] variable, which is used in multiple locations such as index.php, and (4) aggregated RSS feeds in the RSS aggregation module. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
| 69712 | CVE-2005-4074 | Directory traversal vulnerability in index.cfm in CF_Nuke 4.6 and earlier, when Sandbox Security is disabled, allows remote attackers to include arbitrary local .cfm files via a .. (dot dot) in the (1) sector or (2) page parameters. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 4688 | CVE-2008-4899 | Cross-site request forgery (CSRF) vulnerability in Planetluc RateMe 1.3.3 allows remote attackers to perform unauthorized actions as other users via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-03 | 2009-04-30 | View | |
| 70224 | CVE-2005-4635 | The nl_fib_input function in fib_frontend.c in the Linux kernel before 2.6.15 does not check for valid lengths of the header and payload, which allows remote attackers to cause a denial of service (invalid memory reference) via malformed fib_lookup netlink messages. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 4944 | CVE-2008-5160 | Unspecified vulnerability in MyServer 0.8.11 allows remote attackers to cause a denial of service (daemon crash) via multiple invalid requests with the HTTP GET, DELETE, OPTIONS, and possibly other methods, related to a "204 No Content error." | 2 | 5 | Medium | 2017-01-03 | 2009-01-29 | View |
Page 2864 of 17672, showing 5 records out of 88360 total, starting on record 14316, ending on 14320