NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
888  CVE-2008-0918  SQL injection vulnerability in includes/count_dl_or_link.inc.php in the astatsPRO (com_astatspro) 1.0.1 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to getfile.php, a different vector than CVE-2008-0839. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-03  2008-09-05  View
66424  CVE-2005-0673  Cross-site scripting (XSS) vulnerability in usercp_register.php for phpBB 2.0.13 allows remote attackers to inject arbitrary web script or HTML by setting the (1) allowhtml, (2) allowbbcode, or (3) allowsmilies parameters to inject HTML into signatures for personal messages, possibly when they are processed by privmsg.php or viewtopic.php.    4.3  Medium  2017-01-03  2008-09-05  View
66680  CVE-2005-0930  Cross-site scripting (XSS) vulnerability in message.php in Chatness 2.5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via (1) the user field or (2) the message parameter to message.php.    4.3  Medium  2017-01-03  2008-09-05  View
1656  CVE-2008-1715  SQL injection vulnerability in content/user.php in AuraCMS 2.2.1 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the country parameter.    6.8  Medium  2017-01-03  2008-09-05  View
67448  CVE-2005-1723  LaunchServices in Apple Mac OS X 10.4.x up to 10.4.1 does not properly mark file extensions and MIME types as unsafe if an Apple Uniform Type Identifier (UTI) is not created when the type is added to the database of unsafe types, which could allow attackers to bypass intended restrictions.    7.5  High  2017-01-03  2008-09-05  View

Page 794 of 17672, showing 5 records out of 88360 total, starting on record 3966, ending on 3970

Actions