NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
57523  CVE-2007-5458  SQL injection vulnerability in index.php in the newsletter module 1.0 for KwsPHP, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the newsletter parameter.    6.8  Medium  2017-01-07  2008-09-05  View
58291  CVE-2007-6296  PHP remote file inclusion vulnerability in users_popupL.php3 in phpMyChat 0.14.5 allows remote attackers to execute arbitrary PHP code via a URL in the From parameter.    Medium  2017-01-07  2008-09-05  View
58547  CVE-2007-6552  Directory traversal vulnerability in index.php in AuraCMS 2.2 allows remote authenticated users to include and execute arbitrary local files via a .. (dot dot) in the act parameter, possibly involving the news pilih component; as demonstrated by including admin/admin_users.php to bypass a protection mechanism against direct request.    Medium  2017-01-07  2008-11-15  View
58803  CVE-2006-0063  Cross-site scripting (XSS) vulnerability in phpBB 2.0.19, when "Allowed HTML tags" is enabled, allows remote attackers to inject arbitrary web script or HTML via a permitted HTML tag with " (single quote) characters and active attributes such as onmouseover, a variant of CVE-2005-4357.    4.3  Medium  2016-12-20  2011-03-07  View
59059  CVE-2006-0319  Directory traversal vulnerability in the FTP server (port 22003/tcp) in Farmers WIFE 4.4 SP1 allows remote attackers to create arbitrary files via ".." (dot dot) sequences in a (1) PUT, (2) SIZE, and possibly other commands.    Medium  2016-12-20  2016-10-17  View

Page 14976 of 17672, showing 5 records out of 88360 total, starting on record 74876, ending on 74880

Actions