NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65604  CVE-2006-7061  Scriptsez.net E-Dating System stores data files with predictable names under the web document root with insufficient access control, which allows remote attackers to read private messages and leverage them for cross-site scripting (XSS) attacks.    9.3  High  2016-12-20  2008-09-05  View
580  CVE-2008-0605  Multiple cross-site scripting (XSS) vulnerabilities in AstroSoft HelpDesk before 1.95.228 allow remote attackers to inject arbitrary web script or HTML via the (1) txtSearch parameter to operator/article/article_search_results.asp and the (2) Attach_Id parameter to operator/article/article_attachment.asp. NOTE: for vector 2, the XSS occurs in a forced SQL error message.    4.3  Medium  2017-01-03  2008-09-05  View
1092  CVE-2008-1131  Cross-site scripting (XSS) vulnerability in Drupal 6.0 allows remote authenticated users to inject arbitrary web script or HTML via titles in content edit forms.    3.5  Low  2017-01-03  2008-09-05  View
67140  CVE-2005-1401  Format string vulnerability in the client for Mtp-Target 1.2.2 and earlier allows remote attackers to execute arbitrary code via game messages or other text.    7.5  High  2017-01-03  2008-09-05  View
2372  CVE-2008-2458  Cross-site scripting (XSS) vulnerability in index.php in Starsgames Control Panel 4.6.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the st parameter.    4.3  Medium  2017-01-03  2008-09-05  View

Page 428 of 17672, showing 5 records out of 88360 total, starting on record 2136, ending on 2140

Actions