NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66570 | CVE-2005-0820 | Microsoft Office InfoPath 2003 SP1 includes sensitive information in the Manifest.xsf file in a custom .xsn form, which allows attackers to obtain printer and network information, obtain the database name, username, and password, or obtain the internal web server name. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
66826 | CVE-2005-1077 | Multiple cross-site scripting (XSS) vulnerabilities in XAMPP 1.4.x allow remote attackers to inject arbitrary web script or HTML via (1) cds.php, (2) Guestbook-EN.pl, or (3) phonebook.php. | 2 | 4.3 | Medium | 2017-01-03 | 2016-10-17 | View | |
1546 | CVE-2008-1603 | Cross-site scripting (XSS) vulnerability in GNB DesignForm before 3.9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in the email form. | 2 | 4.3 | Medium | 2017-01-03 | 2009-03-18 | View | |
1802 | CVE-2008-1862 | ExBB Italia 0.22 and earlier only checks GET requests that use the QUERY_STRING for certain path manipulations, which allows remote attackers to bypass this check via (1) POST or (2) COOKIE variables, a different vector than CVE-2006-4488. NOTE: this can be leveraged to conduct PHP remote file inclusion attacks via a URL in the (a) new_exbb[home_path] or (b) exbb[home_path] parameter to modules/threadstop/threadstop.php. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
67338 | CVE-2005-1611 | Cross-site scripting (XSS) vulnerability in WebX in Web Crossing 5.x allows remote attackers to inject arbitrary web script or HTML via a URL with an "@" followed by the desired script. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 366 of 17672, showing 5 records out of 88360 total, starting on record 1826, ending on 1830