NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 70443 | CVE-2005-4854 | eZ publish 3.5 through 3.7 before 20050830 does not use a folder"s read permissions to restrict notifications, which allows remote authenticated users to obtain sensitive information about changes to content in arbitrary folders. | 2 | 5 | Medium | 2017-01-03 | 2015-07-28 | View | |
| 70444 | CVE-2005-4855 | Unrestricted file upload vulnerability in eZ publish 3.5 before 3.5.5, 3.6 before 3.6.2, 3.7 before 3.7.0rc2, and 3.8 before 20050922 does not restrict Image datatype uploads to image content types, which allows remote authenticated users to upload certain types of files, as demonstrated by .js files, which may enable cross-site scripting (XSS) attacks or other attacks. | 2 | 3.5 | Low | 2017-01-03 | 2015-07-28 | View | |
| 70445 | CVE-2005-4856 | The admin interface in eZ publish 3.5 before 3.5.7, 3.6 before 3.6.5, 3.7 before 3.7.3, and 3.8 before 20051110 does not properly handle authorization errors, which allows remote attackers to obtain sensitive information and see the admin pagelayout and associated templates via a request with (1) "anything after the url" or (2) a "wrong url". | 2 | 5 | Medium | 2017-01-03 | 2015-07-28 | View | |
| 70446 | CVE-2005-4857 | eZ publish 3.5 before 3.5.7, 3.6 before 3.6.5, 3.7 before 3.7.3, and 3.8 before 20051128 allows remote authenticated users to cause a denial of service (Apache httpd segmentation fault) via a request to content/advancedsearch.php with an empty SearchContentClassID parameter, reportedly related to a "memory addressing error". | 2 | 4 | Medium | 2017-01-03 | 2015-07-28 | View | |
| 70447 | CVE-2005-4858 | Multiple cross-site scripting (XSS) vulnerabilities in mimic2.cgi in mimicboard2 (Mimic2) 086 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified parameters associated with the (1) name, (2) title, and (3) comment sections, as demonstrated by referencing a remote document through the SRC attribute of an IFRAME element. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 3113 of 17672, showing 5 records out of 88360 total, starting on record 15561, ending on 15565