NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6906  CVE-2008-7175  Cross-site scripting (XSS) vulnerability in wp-admin/admin.php in NextGEN Gallery 0.96 and earlier plugin for Wordpress allows remote attackers to inject arbitrary web script or HTML via the picture description field in a page edit action.    4.3  Medium  2017-01-03  2009-10-05  View
6907  CVE-2008-7176  Multiple directory traversal vulnerabilities in Facil CMS 0.1RC allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) change_lang parameter to index.php or (2) modload parameter to modules.php.    6.8  Medium  2017-01-03  2009-10-02  View
6908  CVE-2008-7177  Buffer overflow in the listing module in Netwide Assembler (NASM) before 2.03.01 has unknown impact and attack vectors, a different vulnerability than CVE-2008-2719.    9.3  High  2017-01-03  2009-09-16  View
6909  CVE-2008-7178  Directory traversal vulnerability in Uploader module 1.1 for XOOPS allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter in a downloadfile action to index.php.    7.5  High  2017-01-03  2009-09-08  View
6910  CVE-2008-7179  OTManager CMS 2.4 allows remote attackers to bypass authentication and gain administrator privileges by setting the ADMIN_Hora, ADMIN_Logado, and ADMIN_Nome cookies to certain values, as reachable in Admin/index.php.    7.5  High  2017-01-03  2009-10-01  View

Page 1382 of 17672, showing 5 records out of 88360 total, starting on record 6906, ending on 6910

Actions