NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 1634 | CVE-2008-1692 | Eterm 0.9.4 opens a terminal window on :0 if -display is not specified and the DISPLAY environment variable is not set, which might allow local users to hijack X11 connections. NOTE: realistic attack scenarios require that the victim enters a command on the wrong machine. | 2 | 6.9 | Medium | 2017-01-03 | 2009-02-26 | View | |
| 53348 | CVE-2007-1141 | PHP remote file inclusion vulnerability in preview.php in Magic News Plus 1.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the php_script_path parameter. NOTE: This issue may overlap CVE-2006-0723. | 2 | 7.5 | High | 2017-01-07 | 2009-02-26 | View | |
| 53349 | CVE-2007-1142 | Cross-site scripting (XSS) vulnerability in Magic News Plus 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the link_parameters parameter in (1) news.php and (2) n_layouts.php. | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-26 | View | |
| 53350 | CVE-2007-1143 | Directory traversal vulnerability in pn-menu.php in J-Web Pics Navigator 1.0 allows remote attackers to list arbitrary directories via a .. (dot dot) in the dir parameter. | 2 | 7.8 | High | 2017-01-07 | 2009-02-26 | View | |
| 53359 | CVE-2007-1152 | Multiple directory traversal vulnerabilities in Pyrophobia 2.1.3.1 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) act or (2) pid parameter to the top-level URI (index.php), or the (3) action parameter to admin/index.php. NOTE: some of these details are obtained from third party information. | 2 | 5 | Medium | 2017-01-07 | 2009-02-26 | View |
Page 14876 of 17672, showing 5 records out of 88360 total, starting on record 74376, ending on 74380