NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57373 | CVE-2007-5297 | Cross-site scripting (XSS) vulnerability in index.php in Minki 1.30 allows remote attackers to inject arbitrary web script or HTML via the page parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
57885 | CVE-2007-5834 | Cross-site scripting (XSS) vulnerability in BosDev BosNews 4 allows remote attackers to inject arbitrary web script or HTML via a SCRIPT element in a news post. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
59933 | CVE-2006-1219 | Directory traversal vulnerability in Gallery 2.0.3 and earlier, and 2.1 before RC-2a, allows remote attackers to include arbitrary PHP files via ".." (dot dot) sequences in the stepOrder parameter to (1) upgrade/index.php or (2) install/index.php. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60189 | CVE-2006-1480 | Directory traversal vulnerability in start.php in WebAlbum 2.02 allows remote attackers to include arbitrary files and execute commands by (1) injecting code into local log files via GET commands, then (2) accessing that log via a .. (dot dot) sequence and a trailing null (%00) byte in the skin2 COOKIE parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
60701 | CVE-2006-1996 | Scry Gallery 1.1 allows remote attackers to obtain sensitive information via an invalid p parameter, which reveals the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1080 of 17672, showing 5 records out of 88360 total, starting on record 5396, ending on 5400