NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69905  CVE-2005-4307  Cross-site scripting (XSS) vulnerability in ScareCrow 2.13 and earlier allows remote attackers to inject arbitrary web script or HTML via the forum parameter to (1) forum.cgi and (2) post.cgi, or (3) the user parameter to profile.cgi.    4.3  Medium  2017-01-03  2011-03-07  View
70417  CVE-2005-4828  Kolab Server 2.0.0 and 2.0.1 does not properly handle when a large email is sent with a "." in the wrong place, which causes kolabfilter to add another ".", which might break clear-text signatures and attachments. NOTE: it is not clear whether this issue crosses privilege boundaries, so this might not be a vulnerability.    6.4  Medium  2017-01-03  2010-04-02  View
70929  CVE-2004-0493  The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memory exhaustion), and possibly an integer signedness error leading to a heap-based buffer overflow on 64 bit systems, via long header lines with large numbers of space or tab characters.    6.4  Medium  2017-07-18  2017-07-10  View
5649  CVE-2008-5918  Cross-site scripting (XSS) vulnerability in the getParameterisedSelfUrl function in index.php in WebSVN 2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.    4.3  Medium  2017-01-03  2009-03-19  View
71185  CVE-2004-0759  Mozilla before 1.7 allows remote web servers to read arbitrary files via Javascript that sets the value of an <input type="file"> tag.    6.4  Medium  2017-07-18  2017-07-10  View

Page 618 of 17672, showing 5 records out of 88360 total, starting on record 3086, ending on 3090

Actions