NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
590  CVE-2008-0615  Directory traversal vulnerability in wp-admin/admin.php in the DMSGuestbook 1.8.0 and 1.7.0 plugin for WordPress allows remote authenticated users to read arbitrary files via a .. (dot dot) in the (1) folder and (2) file parameters.    Medium  2017-01-03  2008-09-05  View
66894  CVE-2005-1145  ** DISPUTED ** NOTE: this issue has been disputed by the vendor. Cross-site scripting (XSS) vulnerability in calendar.pl in CalendarScript 3.20 allows remote attackers to inject arbitrary web script or HTML via the template parameter, a different vulnerability than CVE-2005-1146.    4.3  Medium  2017-01-03  2008-09-05  View
67918  CVE-2005-2216  PHP remote file inclusion vulnerability in gals.php in PhotoGal Photo Gallery 1.5 and earlier allows remote attackers to execute arbitrary code via the news_file parameter.    7.5  High  2017-01-03  2008-09-05  View
68430  CVE-2005-2742  SecurityAgent in Apple Mac OS X 10.4.2, under certain circumstances, can cause the "Switch User..." button to appear even though the "Enable fast user switching" setting is disabled, which can allow attackers with physical access to gain access to the desktop and bypass the "Require password to wake this computer from sleep or screen saver" setting.    4.6  Medium  2017-01-03  2008-09-05  View
69198  CVE-2005-3537  A "missing request validation" error in phpBB 2 before 2.0.18 allows remote attackers to edit private messages of other users, probably by modifying certain parameters or other inputs.    Medium  2017-01-03  2008-09-05  View

Page 492 of 17672, showing 5 records out of 88360 total, starting on record 2456, ending on 2460

Actions