NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
1634  CVE-2008-1692  Eterm 0.9.4 opens a terminal window on :0 if -display is not specified and the DISPLAY environment variable is not set, which might allow local users to hijack X11 connections. NOTE: realistic attack scenarios require that the victim enters a command on the wrong machine.    6.9  Medium  2017-01-03  2009-02-26  View
53348  CVE-2007-1141  PHP remote file inclusion vulnerability in preview.php in Magic News Plus 1.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the php_script_path parameter. NOTE: This issue may overlap CVE-2006-0723.    7.5  High  2017-01-07  2009-02-26  View
53349  CVE-2007-1142  Cross-site scripting (XSS) vulnerability in Magic News Plus 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the link_parameters parameter in (1) news.php and (2) n_layouts.php.    4.3  Medium  2017-01-07  2009-02-26  View
53350  CVE-2007-1143  Directory traversal vulnerability in pn-menu.php in J-Web Pics Navigator 1.0 allows remote attackers to list arbitrary directories via a .. (dot dot) in the dir parameter.    7.8  High  2017-01-07  2009-02-26  View
53359  CVE-2007-1152  Multiple directory traversal vulnerabilities in Pyrophobia 2.1.3.1 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) act or (2) pid parameter to the top-level URI (index.php), or the (3) action parameter to admin/index.php. NOTE: some of these details are obtained from third party information.    Medium  2017-01-07  2009-02-26  View

Page 14876 of 17672, showing 5 records out of 88360 total, starting on record 74376, ending on 74380

Actions