NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
6615  CVE-2008-6884  Multiple directory traversal vulnerabilities in XOOPS 2.3.1, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the xoopsConfig[language] parameter to (1) blocks.php and (2) main.php in xoops_lib/modules/protector/.    6.8  Medium  2017-01-03  2009-08-03  View
72151  CVE-2004-1772  Stack-based buffer overflow in shar in GNU sharutils 4.2.1 allows local users to execute arbitrary code via a long -o command line argument.    4.6  Medium  2017-07-18  2017-07-10  View
6871  CVE-2008-7140  Multiple cross-site scripting (XSS) vulnerabilities in @lex Guestbook 4.0.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) language_setup parameter to setup.php or (2) test parameter to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: a third party has been reported that the test parameter is not used in @lex Guestbook.    4.3  Medium  2017-01-03  2009-09-01  View
72407  CVE-2004-2030  Multiple cross-site scripting (XSS) vulnerabilities in index.jsp for Liferay before 2.2.0 release 10/1/2004 allow remote attackers to inject arbitrary web script or HTML, as demonstrated using the message subject.    4.3  Medium  2017-07-18  2017-07-10  View
7127  CVE-2017-5489  Cross-site request forgery (CSRF) vulnerability in WordPress before 4.7.1 allows remote attackers to hijack the authentication of unspecified victims via vectors involving a Flash file upload.    6.8  Medium  2017-07-18  2017-07-17  View

Page 14892 of 17672, showing 5 records out of 88360 total, starting on record 74456, ending on 74460

Actions