NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 57280 | CVE-2007-5198 | Buffer overflow in the redir function in check_http.c in Nagios Plugins before 1.4.10, when running with the -f (follow) option, allows remote web servers to execute arbitrary code via Location header responses (redirects) with a large number of leading "L" characters. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 57792 | CVE-2007-5735 | eFileMan 7.1.0.87-88 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain unspecified user information via a direct request for cgi-bin/efileman/efileman_config.pm. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58048 | CVE-2007-6027 | PHP remote file inclusion vulnerability in admin.jjgallery.php in the Carousel Flash Image Gallery (com_jjgallery) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 58304 | CVE-2007-6309 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in webSPELL 4.1.2 allow remote attackers to inject arbitrary web script or HTML via (1) the galleryID parameter in a usergallery upload action; or the (2) upID, (3) tag, (4) month, (5) userID, or (6) year parameter in a calendar announce action. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 59072 | CVE-2006-0333 | Cross-site scripting (XSS) vulnerability in ar-blog 5.2 allows remote attackers to inject arbitrary web script or HTML via the (1) month or (2) year parameter to index.php. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 15436 of 17672, showing 5 records out of 88360 total, starting on record 77176, ending on 77180