NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
52237 | CVE-2009-5149 | Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 have predictable technician passwords, which makes it easier for remote attackers to obtain access via the web management interface, related to a "password of the day" issue. | 2 | 4.3 | Medium | 2017-01-07 | 2015-11-23 | View | |
52493 | CVE-2007-0265 | Multiple cross-site scripting (XSS) vulnerabilities in Ezboxx Portal System Beta 0.7.6 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the pic parameter to custom/piczoom.asp, (2) the nocatname parameter to boxx/user-upload.asp, or (3) the iid parameter to indexes/newscomments.asp. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
52749 | CVE-2007-0525 | Multiple buffer overflows in Nickolas Grigoriadis Mini Web server (MiniWebsvr) before 0.05 have unknown impact and attack vectors. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
53005 | CVE-2007-0788 | Cross-site scripting (XSS) vulnerability in MediaWiki 1.9.x before 1.9.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "sortable tables JavaScript." | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
53261 | CVE-2007-1053 | ** DISPUTED ** Multiple PHP remote file inclusion vulnerabilities in phpXmms 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the tcmdp parameter to (1) phpxmmsb.php or (2) phpxmmst.php. NOTE: this issue has been disputed by a reliable third party, stating that the tcmdp variable is initialized by config.php. | 2 | 10 | High | 2017-01-07 | 2008-11-15 | View |
Page 1292 of 17672, showing 5 records out of 88360 total, starting on record 6456, ending on 6460