NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66857 | CVE-2005-1108 | The ij_untrusted_url function in JunkBuster 2.0.2-r2, with single-threaded mode enabled, allows remote attackers to overwrite the referrer field via a crafted HTTP request. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
67113 | CVE-2005-1374 | Multiple cross-site scripting (XSS) vulnerabilities in Claroline 1.5.3 through 1.6 Release Candidate 1, and possibly Dokeos, allow remote attackers to inject arbitrary web script or HTML via (1) exercise_result.php, (2) exercice_submit.php, (3) agenda.php, (4) learningPathList.php, (5) learningPathAdmin.php, (6) learningPath.php, (7) userLog.php, (8) tool parameter to toolaccess_details.php, (9) data parameter to user_access_details.php, or (10) coursePath parameter to myagenda.php. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
67369 | CVE-2005-1644 | Cross-site scripting (XSS) vulnerability in guestbook.php for 1Two Livre d'Or 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) livreornom, (2) livreoremail, or (3) livreormessage parameters. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
68393 | CVE-2005-2704 | Firefox before 1.0.7 and Mozilla Suite before 1.7.12 allows remote attackers to spoof DOM objects via an XBL control that implements an internal XPCOM interface. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
68649 | CVE-2005-2985 | SQL injection vulnerability in search_result.php in AEwebworks aeDating Script 4.0 and earlier allows remote attackers to execute arbitrary SQL statements via the Country parameter. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 417 of 17672, showing 5 records out of 88360 total, starting on record 2081, ending on 2085