NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 58007 | CVE-2007-5983 | Cross-site scripting (XSS) vulnerability in index.php in Justin Hagstrom AutoIndex PHP Script before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF). | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 52888 | CVE-2007-0666 | Ipswitch WS_FTP Server 5.04 allows FTP site administrators to execute arbitrary code on the system via a long input string to the (1) iFTPAddU or (2) iFTPAddH file, or to a (3) edition module. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 55448 | CVE-2007-3296 | The ThunderServer.webThunder.1 ActiveX control in xunlei Web Thunderbolt 1.7.3.109 allows remote attackers to download arbitrary files and conduct other unauthorized actions by invoking dangerous methods. | 2 | 9.3 | High | 2017-01-07 | 2008-11-15 | View | |
| 55704 | CVE-2007-3553 | Cross-site scripting (XSS) vulnerability in Rapid Install Web Server in Oracle Application Server 11i allows remote attackers to inject arbitrary web script or HTML via a URL to the "Secondary Login Page", as demonstrated using (1) pls/ and (2) pls/MSBEP004/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56728 | CVE-2007-4608 | PHP remote file inclusion vulnerability in protection.php in ePersonnel RC_2004_02 allows remote attackers to execute arbitrary PHP code via a URL in the logout_page parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View |
Page 15287 of 17672, showing 5 records out of 88360 total, starting on record 76431, ending on 76435