NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56558 | CVE-2007-4433 | Cross-site scripting (XSS) vulnerability in textfilesearch.aspx in the Text File Search ASP.NET edition allows remote attackers to inject arbitrary web script or HTML via the search field. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57070 | CVE-2007-4981 | Cross-site scripting (XSS) vulnerability in the save function in Obedit 3.03 allows user-assisted remote attackers to inject arbitrary web script or HTML via unknown vectors, as demonstrated by a SCRIPT element in an unspecified context when saving a document. NOTE: because the details of the attack are uncertain, it is unclear whether this crosses privilege boundaries. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57838 | CVE-2007-5787 | Micro Login System 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing a password via a direct request for userpwd.txt. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58606 | CVE-2007-6611 | Cross-site scripting (XSS) vulnerability in view.php in Mantis before 1.1.0 allows remote attackers to inject arbitrary web script or HTML via a filename, related to bug_report.php. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 63214 | CVE-2006-4581 | Unrestricted file upload vulnerability in The Address Book 1.04e validates the Content-Type header but not the file extension, which allows remote attackers to upload arbitrary PHP scripts. | 2 | 5 | Medium | 2016-12-20 | 2008-11-15 | View |
Page 15385 of 17672, showing 5 records out of 88360 total, starting on record 76921, ending on 76925