NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67751  CVE-2005-2042  Cross-site scripting (XSS) vulnerability in ajax-spell before 1.8 allows remote attackers to inject arbitrary web script or HTML via onmouseover or other events in HTML tags.    4.3  Medium  2017-01-03  2008-09-05  View
2471  CVE-2008-2564  SQL injection vulnerability in the JotLoader (com_jotloader) component 1.2.1.a and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter to index.php.    7.5  High  2017-01-03  2008-09-10  View
68007  CVE-2005-2306  Race condition in Macromedia JRun 4.0, ColdFusion MX 6.1 and 7.0, when under heavy load, causes JRun to assign a duplicate authentication token to multiple sessions, which could allow authenticated users to gain privileges as other users.    3.7  Low  2017-01-03  2008-09-05  View
2727  CVE-2008-2833  admin/upload.php in le.cms 1.4 and earlier allows remote attackers to bypass administrative authentication, and upload and execute arbitrary files in images/, via a nonzero value for the submit0 parameter in conjunction with filenames in the filename and upload parameters.    10  High  2017-01-03  2009-04-08  View
68263  CVE-2005-2574  xmb.php in XMB Forum 1.9.1 extracts and defines all provided variables, which allows remote attackers to modify arbitrary server variables such as _SERVER[REMOTE_ADDR].    Medium  2017-01-03  2016-10-17  View

Page 3026 of 17672, showing 5 records out of 88360 total, starting on record 15126, ending on 15130

Actions