NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54726  CVE-2007-2562  Cross-site scripting (XSS) vulnerability in index.php in Kayako eSupport 3.00.90 allows remote attackers to inject arbitrary web script or HTML via the _m parameter.    4.3  Medium  2017-01-07  2008-11-15  View
54982  CVE-2007-2819  Cross-site scripting (XSS) vulnerability in reportItem.do in Track+ 3.3.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the projId parameter.    4.3  Medium  2017-01-07  2012-10-30  View
55494  CVE-2007-3342  Multiple cross-site scripting (XSS) vulnerabilities in Movable Type (MT) before 3.34 allow remote attackers to inject arbitrary web script or HTML via comments that have (1) a malformed SGML numeric character reference with a "" (0x00) character in a javascript: URI or (2) an attribute in an element that lacks the ">" character at the end of the start tag, a different vulnerability than CVE-2007-0231.    4.3  Medium  2017-01-07  2008-11-13  View
55750  CVE-2007-3600  WordPlugin in the wordintegration component in vtiger CRM before 5.0.3 allows remote authenticated users to bypass field level security permissions and merge arbitrary fields in an Email template, as demonstrated by the fields in the Contact module.    Medium  2017-01-07  2008-11-15  View
56262  CVE-2007-4131  Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.    6.8  Medium  2017-01-07  2011-03-07  View

Page 15642 of 17672, showing 5 records out of 88360 total, starting on record 78206, ending on 78210

Actions