NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 69663 | CVE-2005-4025 | Help Desk Reloaded Free Help Desk does not remove or protect install.php once installation is complete, which allows remote attackers to gain privileges via a direct request to install.php, then navigating to accountsetup.php and creating a new user. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 69664 | CVE-2005-4026 | search.php in Geeklog 1.4.x before 1.4.0rc1, and 1.3.x before 1.3.11sr3, allows remote attackers to obtain sensitive information via invalid (1) datestart and (2) dateend parameters, which leaks the web server path in an error message. | 2 | 5 | Medium | 2017-01-03 | 2008-09-20 | View | |
| 69665 | CVE-2005-4027 | SQL injection vulnerability in SimpleBBS 1.1 allows remote attackers to execute arbitrary SQL commands via unspecified search module parameters. | 2 | 7.5 | High | 2017-01-03 | 2008-09-20 | View | |
| 69666 | CVE-2005-4028 | Multiple cross-site scripting (XSS) vulnerabilities in aMember allow remote attackers to inject arbitrary web script or HTML via the (1) lamember_login parameter to sendpass.php and (2) login parameter to member.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 69667 | CVE-2005-4029 | WebEOC before 6.0.2 allows remote attackers to obtain valid usernames via the HTML source of the WebEOC login webpage, which could be useful in other attacks such as locking out valid users via brute force methods. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 2957 of 17672, showing 5 records out of 88360 total, starting on record 14781, ending on 14785