NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
2119 | CVE-2008-2192 | Static code injection vulnerability in box/minichat/boxpop.php in IT!CMS (aka itcms) 1.9 allows remote attackers to inject arbitrary PHP code into box/MiniChat/data/shouts.php via the shout parameter. | 2 | 10 | High | 2017-01-03 | 2008-09-05 | View | |
67911 | CVE-2005-2209 | Capturix ScanShare 1.06 build 50 stores sensitive information such as the password in cleartext in capturixss_cfg.ini, which is readable by local users. | 2 | 1.9 | Low | 2017-01-03 | 2008-09-05 | View | |
68679 | CVE-2005-3015 | Cross-site scripting (XSS) vulnerability in IBM Lotus Domino 6.5.2 allows remote attackers to inject arbitrary web script or HTML via the (1) BaseTarget or (2) Src parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
70215 | CVE-2005-4626 | The default configuration of Recruitment Software installs admin/site.xml under the web document root with insufficient access control, which might allow remote attackers to obtain sensitive information (MySQL database credentials) via a direct request. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
73031 | CVE-2004-2654 | The clientAbortBody function in client_side.c in Squid Web Proxy Cache before 2.6 STABLE6 allows remote attackers to cause a denial of service (segmentation fault) via unspecified vectors that trigger a null dereference. NOTE: in a followup advisory, a researcher claimed that the issue was a buffer overflow that was not fixed in STABLE6. However, the vendor"s bug report clearly shows that the researcher later retracted this claim, because the tested product was actually STABLE5. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 448 of 17672, showing 5 records out of 88360 total, starting on record 2236, ending on 2240