NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
66192 | CVE-2005-0434 | Multiple cross-site scripting (XSS) vulnerabilities in Php-Nuke 7.5 allow remote attackers to inject arbitrary HTML or web script via (1) the newdownloadshowdays parameter in a NewDownloads operation or (2) the newlinkshowdays parameter in a NewLinks operation. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
67216 | CVE-2005-1478 | Format string vulnerability in dSMTP (dsmtp.exe) in DMail 3.1a allows remote attackers to execute arbitrary code via format string specifiers in the xtellmail command. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
68752 | CVE-2005-3089 | Firefox 1.0.6 allows attackers to cause a denial of service (crash) via a Proxy Auto-Config (PAC) script that uses an eval statement. NOTE: it is not clear whether an untrusted party has any role in triggering this issue, so it might not be a vulnerability. | 2 | 2.6 | Low | 2017-07-18 | 2017-07-10 | View | |
69008 | CVE-2005-3346 | Buffer overflow in the environment variable substitution code in main.c in OSH 1.7-14 allows local users to inject arbitrary environment variables, such as LD_PRELOAD, via pathname arguments of the form "$VAR/EVAR=arg", which cause the EVAR portion to be appended to a buffer returned by a getenv function call. | 2 | 7.2 | High | 2017-07-18 | 2017-07-10 | View | |
69264 | CVE-2005-3626 | Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that triggers a null dereference. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 783 of 17672, showing 5 records out of 88360 total, starting on record 3911, ending on 3915