NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56558  CVE-2007-4433  Cross-site scripting (XSS) vulnerability in textfilesearch.aspx in the Text File Search ASP.NET edition allows remote attackers to inject arbitrary web script or HTML via the search field.    4.3  Medium  2017-01-07  2008-11-15  View
57070  CVE-2007-4981  Cross-site scripting (XSS) vulnerability in the save function in Obedit 3.03 allows user-assisted remote attackers to inject arbitrary web script or HTML via unknown vectors, as demonstrated by a SCRIPT element in an unspecified context when saving a document. NOTE: because the details of the attack are uncertain, it is unclear whether this crosses privilege boundaries.    4.3  Medium  2017-01-07  2008-11-15  View
57838  CVE-2007-5787  Micro Login System 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing a password via a direct request for userpwd.txt.    Medium  2017-01-07  2008-11-15  View
58606  CVE-2007-6611  Cross-site scripting (XSS) vulnerability in view.php in Mantis before 1.1.0 allows remote attackers to inject arbitrary web script or HTML via a filename, related to bug_report.php.    4.3  Medium  2017-01-07  2008-11-15  View
63214  CVE-2006-4581  Unrestricted file upload vulnerability in The Address Book 1.04e validates the Content-Type header but not the file extension, which allows remote attackers to upload arbitrary PHP scripts.    Medium  2016-12-20  2008-11-15  View

Page 15385 of 17672, showing 5 records out of 88360 total, starting on record 76921, ending on 76925

Actions