NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54360 | CVE-2007-2190 | PHP remote file inclusion vulnerability in admin/public/webpages.php in Eba News 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the filename parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
57944 | CVE-2007-5919 | MyWebFTP, possibly 5.3.2, stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain an MD5 password hash via a direct request for pass/pass.txt. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View | |
59736 | CVE-2006-1013 | PHP remote file include vulnerability in index.php in SMartBlog (aka SMBlog) 1.2 allows remote attackers to include and execute arbitrary PHP files via (1) the pg parameter and (2) a query string without a parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
61272 | CVE-2006-2577 | Multiple PHP remote file inclusion vulnerabilities in Docebo 3.0.3 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in (1) where_cms, (2) where_lms, (3) where_upgrade, (4) BBC_LIB_PATH, and (5) BBC_LANGUAGE_PATH parameters in various unspecifed scripts. NOTE: the provenance of some of this information is unknown; the details are obtained solely from third party information. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
62296 | CVE-2006-3622 | The showtopic module in Koobi Pro CMS 5.6 allows remote attackers to obtain sensitive information via a " (single quote) in the p parameter, which displays the path in an error message. NOTE: it is not clear whether this is SQL injection or a forced SQL error. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16540 of 17672, showing 5 records out of 88360 total, starting on record 82696, ending on 82700