NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2119  CVE-2008-2192  Static code injection vulnerability in box/minichat/boxpop.php in IT!CMS (aka itcms) 1.9 allows remote attackers to inject arbitrary PHP code into box/MiniChat/data/shouts.php via the shout parameter.    10  High  2017-01-03  2008-09-05  View
67911  CVE-2005-2209  Capturix ScanShare 1.06 build 50 stores sensitive information such as the password in cleartext in capturixss_cfg.ini, which is readable by local users.    1.9  Low  2017-01-03  2008-09-05  View
68679  CVE-2005-3015  Cross-site scripting (XSS) vulnerability in IBM Lotus Domino 6.5.2 allows remote attackers to inject arbitrary web script or HTML via the (1) BaseTarget or (2) Src parameters.    4.3  Medium  2017-01-03  2008-09-05  View
70215  CVE-2005-4626  The default configuration of Recruitment Software installs admin/site.xml under the web document root with insufficient access control, which might allow remote attackers to obtain sensitive information (MySQL database credentials) via a direct request.    Medium  2017-01-03  2008-09-05  View
73031  CVE-2004-2654  The clientAbortBody function in client_side.c in Squid Web Proxy Cache before 2.6 STABLE6 allows remote attackers to cause a denial of service (segmentation fault) via unspecified vectors that trigger a null dereference. NOTE: in a followup advisory, a researcher claimed that the issue was a buffer overflow that was not fixed in STABLE6. However, the vendor"s bug report clearly shows that the researcher later retracted this claim, because the tested product was actually STABLE5.    Medium  2016-12-20  2008-09-05  View

Page 448 of 17672, showing 5 records out of 88360 total, starting on record 2236, ending on 2240

Actions