NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
80942  CVE-2002-1991  PHP file inclusion vulnerability in osCommerce 2.1 execute arbitrary commands via the include_file parameter to include_once.php.    7.5  High  2017-01-05  2008-09-05  View
81198  CVE-2002-2247  The administrator/phpinfo.php script in Mambo Site Server 4.0.11 allows remote attackers to obtain sensitive information such as the full web root path via phpinfo.php, which calls the phpinfo function.    Medium  2017-01-05  2008-09-05  View
58670  CVE-2007-6675  The b_system_comments_show function in htdocs/modules/system/blocks/system_blocks.php in XOOPS before 2.0.18 does not check permissions, which allows remote attackers to read the comments in restricted modules.    Medium  2017-01-07  2008-09-05  View
60462  CVE-2006-1757  Cross-site scripting (XSS) vulnerability in index.php in Vegadns 0.99 allows remote attackers to inject arbitrary web script or HTML via the message parameter.    2.6  Low  2016-12-20  2008-09-05  View
62510  CVE-2006-3843  PHP remote file inclusion vulnerability in com_calendar.php in Calendar Mambo Module 1.5.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter.    7.5  High  2016-12-20  2008-09-05  View

Page 16282 of 17672, showing 5 records out of 88360 total, starting on record 81406, ending on 81410

Actions