NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54270 | CVE-2007-2100 | FAC Guestbook 2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/Gdb.mdb. | 2 | 10 | High | 2017-01-07 | 2008-09-05 | View | |
56574 | CVE-2007-4449 | The client in Toribash 2.71 and earlier allows remote attackers to cause a denial of service (application hang) via a command without an LF character, as demonstrated by a SAY command. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View | |
56830 | CVE-2007-4711 | Multiple cross-site scripting (XSS) vulnerabilities in Toms Gaestebuch 1.00 allow remote attackers to inject arbitrary web script or HTML via the (1) homepage, (2) mail, and (3) name parameters in a show action to (a) form.php; the (4) language and (5) anzeigebreite parameters to (b) admin/header.php; and the (6) msg parameter to (c) install.php, different vectors than CVE-2006-0706. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
58878 | CVE-2006-0138 | aMSN (aka Alvaro"s Messenger) allows remote attackers to cause a denial of service (client hang and termination of client"s instant-messaging session) by repeatedly sending crafted data to the default file-transfer port (TCP 6891). | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
62206 | CVE-2006-3532 | PHP file inclusion vulnerability in includes/edit_new.php in Pivot 1.30 RC2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a FTP URL or full file path in the Paths[extensions_path] parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 1659 of 17672, showing 5 records out of 88360 total, starting on record 8291, ending on 8295