NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69663  CVE-2005-4025  Help Desk Reloaded Free Help Desk does not remove or protect install.php once installation is complete, which allows remote attackers to gain privileges via a direct request to install.php, then navigating to accountsetup.php and creating a new user.    7.5  High  2017-01-03  2008-09-05  View
69664  CVE-2005-4026  search.php in Geeklog 1.4.x before 1.4.0rc1, and 1.3.x before 1.3.11sr3, allows remote attackers to obtain sensitive information via invalid (1) datestart and (2) dateend parameters, which leaks the web server path in an error message.    Medium  2017-01-03  2008-09-20  View
69665  CVE-2005-4027  SQL injection vulnerability in SimpleBBS 1.1 allows remote attackers to execute arbitrary SQL commands via unspecified search module parameters.    7.5  High  2017-01-03  2008-09-20  View
69666  CVE-2005-4028  Multiple cross-site scripting (XSS) vulnerabilities in aMember allow remote attackers to inject arbitrary web script or HTML via the (1) lamember_login parameter to sendpass.php and (2) login parameter to member.php.    4.3  Medium  2017-01-03  2008-09-05  View
69667  CVE-2005-4029  WebEOC before 6.0.2 allows remote attackers to obtain valid usernames via the HTML source of the WebEOC login webpage, which could be useful in other attacks such as locking out valid users via brute force methods.    Medium  2017-01-03  2008-09-05  View

Page 2957 of 17672, showing 5 records out of 88360 total, starting on record 14781, ending on 14785

Actions