NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 85 | CVE-2008-0094 | Multiple directory traversal vulnerabilities in MODx Content Management System 0.9.6.1 allow remote attackers to (1) include and execute arbitrary local files via a .. (dot dot) in the as_language parameter to assets/snippets/AjaxSearch/AjaxSearch.php, reached through index-ajax.php; and (2) read arbitrary local files via a .. (dot dot) in the file parameter to assets/js/htcmime.php. | 2 | 6.4 | Medium | 2017-01-03 | 2008-10-11 | View | |
| 65621 | CVE-2006-7078 | Multiple cross-site scripting (XSS) vulnerabilities in Professional Home Page Tools Login Script, as of July 2006, allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) vorname, and (3) nachname parameters in the register script. NOTE: some details have been obtained from third party sources. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 65877 | CVE-2005-0097 | The NTLM component in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via a malformed NTLM type 3 message that triggers a NULL dereference. | 2 | 5 | Medium | 2017-01-03 | 2010-08-21 | View | |
| 597 | CVE-2008-0622 | Cross-site scripting (XSS) vulnerability in RaidenHTTPD 2.0.19 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to the ulang parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 1109 | CVE-2008-1149 | phpMyAdmin before 2.11.5 accesses $_REQUEST to obtain some parameters instead of $_GET and $_POST, which allows attackers in the same domain to override certain variables and conduct SQL injection and Cross-Site Request Forgery (CSRF) attacks by using crafted cookies. | 2 | 5.1 | Medium | 2017-01-03 | 2011-08-10 | View |
Page 3047 of 17672, showing 5 records out of 88360 total, starting on record 15231, ending on 15235