NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 52370 | CVE-2007-0138 | formbankcgi.exe in Fersch Formbankserver 1.9, when the PATH_INFO begins with (1) AbfrageForm or (2) EingabeForm, allows remote attackers to cause a denial of service (daemon crash) via multiple requests containing many /../ sequences in the Name parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 52626 | CVE-2007-0399 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Simple Machines Forum (SMF) 1.1 RC3 allow remote authenticated users to inject arbitrary web script or HTML via the (1) recipient or (2) BCC field when selecting send in a pm action. | 2 | 6 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 53138 | CVE-2007-0923 | buscador/buscador.htm in Portal Search allows remote attackers to obtain sensitive information (business logic) via a query string composed of a search for certain characters. | 2 | 7.8 | High | 2017-01-07 | 2008-11-15 | View | |
| 55442 | CVE-2007-3290 | categoria.php in LiveCMS 3.4 and earlier allows remote attackers to obtain sensitive information via a " (quote) character in the cid parameter, which reveals the path in a forced SQL error message. | 2 | 9.3 | High | 2017-01-07 | 2008-11-15 | View | |
| 56210 | CVE-2007-4079 | Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft SMS Text Messaging Enterprise allow remote attackers to inject arbitrary web script or HTML via the (1) domain or (2) q parameter to (a) admin/membersearch.php, or (3) the userid parameter to (b) admin/edituser.php. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 15278 of 17672, showing 5 records out of 88360 total, starting on record 76386, ending on 76390