NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
57373  CVE-2007-5297  Cross-site scripting (XSS) vulnerability in index.php in Minki 1.30 allows remote attackers to inject arbitrary web script or HTML via the page parameter.    4.3  Medium  2017-01-07  2011-03-07  View
57885  CVE-2007-5834  Cross-site scripting (XSS) vulnerability in BosDev BosNews 4 allows remote attackers to inject arbitrary web script or HTML via a SCRIPT element in a news post.    4.3  Medium  2017-01-07  2008-11-15  View
59933  CVE-2006-1219  Directory traversal vulnerability in Gallery 2.0.3 and earlier, and 2.1 before RC-2a, allows remote attackers to include arbitrary PHP files via ".." (dot dot) sequences in the stepOrder parameter to (1) upgrade/index.php or (2) install/index.php.    Medium  2016-12-20  2011-03-07  View
60189  CVE-2006-1480  Directory traversal vulnerability in start.php in WebAlbum 2.02 allows remote attackers to include arbitrary files and execute commands by (1) injecting code into local log files via GET commands, then (2) accessing that log via a .. (dot dot) sequence and a trailing null (%00) byte in the skin2 COOKIE parameter.    5.1  Medium  2016-12-20  2011-03-07  View
60701  CVE-2006-1996  Scry Gallery 1.1 allows remote attackers to obtain sensitive information via an invalid p parameter, which reveals the path in an error message.    Medium  2016-12-20  2011-03-07  View

Page 1080 of 17672, showing 5 records out of 88360 total, starting on record 5396, ending on 5400

Actions