NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52370  CVE-2007-0138  formbankcgi.exe in Fersch Formbankserver 1.9, when the PATH_INFO begins with (1) AbfrageForm or (2) EingabeForm, allows remote attackers to cause a denial of service (daemon crash) via multiple requests containing many /../ sequences in the Name parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.    Medium  2017-01-07  2008-11-15  View
52626  CVE-2007-0399  Multiple cross-site scripting (XSS) vulnerabilities in index.php in Simple Machines Forum (SMF) 1.1 RC3 allow remote authenticated users to inject arbitrary web script or HTML via the (1) recipient or (2) BCC field when selecting send in a pm action.    Medium  2017-01-07  2008-11-15  View
53138  CVE-2007-0923  buscador/buscador.htm in Portal Search allows remote attackers to obtain sensitive information (business logic) via a query string composed of a search for certain characters.    7.8  High  2017-01-07  2008-11-15  View
55442  CVE-2007-3290  categoria.php in LiveCMS 3.4 and earlier allows remote attackers to obtain sensitive information via a " (quote) character in the cid parameter, which reveals the path in a forced SQL error message.    9.3  High  2017-01-07  2008-11-15  View
56210  CVE-2007-4079  Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft SMS Text Messaging Enterprise allow remote attackers to inject arbitrary web script or HTML via the (1) domain or (2) q parameter to (a) admin/membersearch.php, or (3) the userid parameter to (b) admin/edituser.php.    4.3  Medium  2017-01-07  2008-11-15  View

Page 15278 of 17672, showing 5 records out of 88360 total, starting on record 76386, ending on 76390

Actions