NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
52765 | CVE-2007-0541 | WordPress allows remote attackers to determine the existence of arbitrary files, and possibly read portions of certain files, via pingback service calls with a source URI that corresponds to a local pathname, which triggers different fault codes for existing and non-existing files, and in certain configurations causes a brief file excerpt to be published as a blog comment. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View | |
56093 | CVE-2007-3957 | Buffer overflow in Nipun Jain xserver 0.1 alpha allows remote attackers to cause a denial of service via a POST request with a long URI. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View | |
56861 | CVE-2007-4744 | PHP remote file inclusion vulnerability in environment.php in AnyInventory 1.9.1 and 2.0, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the DIR_PREFIX parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
57629 | CVE-2007-5564 | Multiple cross-site scripting (XSS) vulnerabilities in NSSboard (formerly Simple PHP Forum) 6.1 allow remote attackers to inject arbitrary web script or HTML via (1) HTML tags when BBcode is disabled; or the (2) user, (3) email, or (4) Real Name fields in a profile. | 2 | 2.6 | Low | 2017-01-07 | 2008-09-05 | View | |
61725 | CVE-2006-3041 | ** DISPUTED ** PHP remote file inclusion vulnerability in Ltwcalendar/calendar.php in Codewalkers Ltwcalendar 4.1.3 allows remote attackers to execute arbitrary PHP code via a URL in the ltw_config[include_dir] parameter. NOTE: CVE disputes this claim, since the $ltw_config[include_dir] variable is defined as a static value in an include file before it is referenced in an include() statement. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 16187 of 17672, showing 5 records out of 88360 total, starting on record 80931, ending on 80935