NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66358 | CVE-2005-0606 | Cross-site scripting (XSS) vulnerability in settings.inc.php for CubeCart 2.0.0 through 2.0.5, as used in multiple PHP files, allows remote attackers to inject arbitrary HTML or web script via the (1) cat_id, (2) PHPSESSID, (3) view_doc, (4) product, (5) session, (6) catname, (7) search, or (8) page parameters. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
66870 | CVE-2005-1121 | Format string vulnerability in the my_xlog function in lib.c for Oops! Proxy Server 1.5.23 and earlier, as called by the auth functions in the passwd_mysql and passwd_pgsql modules, may allow attackers to execute arbitrary code via a URL. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
68406 | CVE-2005-2717 | PHP remote file inclusion vulnerability in WebCalendar before 1.0.1 allows remote attackers to execute arbitrary PHP code when opening settings.php, possibly via send_reminders.php or other scripts. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
69430 | CVE-2005-3792 | Multiple SQL injection vulnerabilities in the Search module in PHP-Nuke 7.8, and possibly other versions before 7.9 with patch 3.1, allows remote attackers to execute arbitrary SQL commands, as demonstrated via the query parameter in a stories type. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
70710 | CVE-2004-0259 | The check_referer() function in Formmail.php 5.0 and earlier allows remote attackers to bypass access restrictions via an empty or spoofed HTTP Referer, as demonstrated using an application on the same web server that contains a cross-site scripting (XSS) issue. | 2 | 9.3 | High | 2017-07-18 | 2017-07-10 | View |
Page 308 of 17672, showing 5 records out of 88360 total, starting on record 1536, ending on 1540