NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 1691 | CVE-2008-1751 | Multiple directory traversal vulnerabilities in index.php in Ksemail allow remote attackers to read arbitrary local files via a .. (dot dot) in the (1) language and (2) lang parameters. | 2 | 6.8 | Medium | 2017-01-03 | 2009-07-29 | View | |
| 1947 | CVE-2008-2011 | Cross-site scripting (XSS) vulnerability in the National Rail Enquiries Live Departure Boards gadget before 1.1 allows remote National Rail Enquiries servers or man-in-the-middle attackers to inject arbitrary web script or HTML, and execute arbitrary code, via a response body, as demonstrated by a SCRIPT element that references a vbscript: URI. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 67483 | CVE-2005-1759 | Race condition in shtool 2.0.1 and earlier allows local users to modify or create arbitrary files via a symlink attack on temporary files after they have been created, a different vulnerability than CVE-2005-1751. | 2 | 1.2 | Low | 2017-01-03 | 2016-10-17 | View | |
| 2203 | CVE-2008-2282 | admin.php in Internet Photoshow and Internet Photoshow Special Edition (SE) allows remote attackers to bypass authentication by setting the login_admin cookie to true. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 67739 | CVE-2005-2030 | Ultimate PHP Board (UPB) 1.9.6 GOLD uses weak encryption for passwords in the users.dat file, which allows attackers to easily decrypt the passwords and gain privileges, possibly after exploiting CVE-2005-2005 to obtain users.dat. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 2921 of 17672, showing 5 records out of 88360 total, starting on record 14601, ending on 14605