NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
79900 | CVE-2002-0903 | register.php for WoltLab Burning Board (wbboard) 1.1.1 uses a small number of random values for the "code" parameter that is provided to action.php to approve a new registration, along with predictable new user ID"s, which allows remote attackers to hijack new user accounts via a brute force attack on the new user ID and the code value. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
80412 | CVE-2002-1459 | Cross-site scripting vulnerability in L-Forum 2.40 and earlier, when the "Enable HTML in messages" option is off, allows remote attackers to insert arbitrary script or HTML via message fields including (1) From, (2) E-Mail, and (3) Subject. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
81180 | CVE-2002-2229 | Directory traversal vulnerability in Sapio Design Ltd. WebReflex 1.53 allows remote attackers to read arbitrary files via a .. in an HTTP request. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
52764 | CVE-2007-0540 | WordPress allows remote attackers to cause a denial of service (bandwidth or thread consumption) via pingback service calls with a source URI that corresponds to a file with a binary content type, which is downloaded even though it cannot contain usable pingback data. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View | |
56604 | CVE-2007-4481 | Cross-site scripting (XSS) vulnerability in index.php in the (1) Blix 0.9.1 and (2) Blix 0.9.1 Rus themes for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF). | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 16181 of 17672, showing 5 records out of 88360 total, starting on record 80901, ending on 80905