NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 69743 | CVE-2005-4135 | Direct static code injection vulnerability in includes/newtopic.php in SimpleBBS 1.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the Host header (possibly the name parameter or variable), which is then written to data/topics.php. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 69744 | CVE-2005-4136 | Cross-site scripting (XSS) vulnerability in login.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via the customerEmailAddress parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 69745 | CVE-2005-4137 | SQL injection vulnerability in viewinvoice.php in DRZES HMS 3.2 allows remote attackers to execute arbitrary SQL commands via the invoiceID parameter. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View | |
| 69746 | CVE-2005-4138 | Multiple cross-site scripting (XSS) vulnerabilities in ThWboard before 3 Beta 2.84 allow remote attackers to inject arbitrary web script or HTML via the (1) Wohnort and (2) Beruf fields in editprofile.php, (3) user parameter array in v_profile.php, and (4) the action parameter in misc.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 69747 | CVE-2005-4139 | Multiple SQL injection vulnerabilities in ThWboard before 3 Beta 2.84 allow remote attackers to execute arbitrary SQL commands via the (1) year parameter in calendar.php, (2) user parameter array in v_profile.php, and (3) the userid parameter in misc.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 2973 of 17672, showing 5 records out of 88360 total, starting on record 14861, ending on 14865