NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
57246  CVE-2007-5163  ** DISPUTED ** PHP remote file inclusion vulnerability in includes/functions/layout.php in Nexty 1.01.A Beta allows remote attackers to execute arbitrary PHP code via a URL in the rel parameter. NOTE: this issue is disputed by CVE because the applicable include is in a function that is not called on a direct request.    6.8  Medium  2017-01-07  2008-09-05  View
58270  CVE-2007-6274  Multiple cross-site scripting (XSS) vulnerabilities in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) day or (2) year parameter.    4.3  Medium  2017-01-07  2008-09-05  View
63134  CVE-2006-4499  ModernBill 5.0.4 and earlier uses cURL with insecure settings for CURLOPT_SSL_VERIFYPEER and CURLOPT_SSL_VERIFYHOST that do not verify SSL certificates, which allows remote attackers to read network traffic via a man-in-the-middle (MITM) attack.    Medium  2016-12-20  2008-09-05  View
63646  CVE-2006-5040  Unspecified vulnerability in SEF404x (com_sef) for Joomla! has unspecified impact and attack vectors.    7.5  High  2016-12-20  2008-09-05  View
63902  CVE-2006-5299  Multiple cross-site scripting (XSS) vulnerabilities in index.php in Gcontact 0.6.5 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2016-12-20  2008-09-05  View

Page 1060 of 17672, showing 5 records out of 88360 total, starting on record 5296, ending on 5300

Actions