NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
80941  CVE-2002-1990  Resin 2.0.5 through 2.1.2 allows remote attackers to reveal physical path information via a URL request for the example Java class file HelloServlet.    Medium  2017-01-05  2008-09-05  View
81197  CVE-2002-2246  Cross-site scripting (XSS) vulnerability in VisNetic Website before 3.5.15 allows remote attackers to inject arbitrary web script or HTML via the HTTP referer header (HTTP_REFERER) to a non-existent page, which is injected into the resulting 404 error page.    4.3  Medium  2017-01-05  2008-09-05  View
53549  CVE-2007-1364  DropAFew before 0.2.1 does not require authorization for certain privileged actions, which allows remote attackers to (1) view the logged calorie information of arbitrary users via the id parameter in editlogcal.php, (2) add arbitrary links via links.php, or (3) create arbitrary users via newaccount2.php.    6.4  Medium  2017-01-07  2008-09-05  View
58669  CVE-2007-6674  Cross-site scripting (XSS) vulnerability in Default.asp in RapidShare Database allows remote attackers to inject arbitrary web script or HTML via the Arayalim parameter.    4.3  Medium  2017-01-07  2008-09-05  View
59693  CVE-2006-0970  PHP remote file inclusion vulnerability in index.php in one or more ActiveCampaign products, possibly SupportTrio, allows remote attackers to include and execute arbitrary files via the page parameter.    7.5  High  2016-12-20  2008-09-05  View

Page 16277 of 17672, showing 5 records out of 88360 total, starting on record 81381, ending on 81385

Actions