NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
81015  CVE-2002-2064  isadmin.php in PhpWebGallery 1.0 allows remote attackers to gain administrative access via by setting the photo_login cookie to pseudo.    7.5  High  2017-01-05  2008-09-05  View
81271  CVE-2002-2320  MySimpleNews 1.0 allows remote attackers to delete arbitrary email messages via a direct request to vider.php3.    7.8  High  2017-01-05  2008-09-05  View
54135  CVE-2007-1965  Multiple cross-site scripting (XSS) vulnerabilities in eXV2 CMS 2.0.4.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the set_lang parameter to (1) archive.php, (2) article.php, (3) index.php, or (4) topics.php.    4.3  Medium  2017-01-07  2008-09-05  View
56439  CVE-2007-4314  pixlie.php in Pixlie 1.7 allows remote attackers to trigger the reading and JPEG image processing of files in a remote directory tree via a URL in the root parameter. NOTE: this can be leveraged for traffic amplification or other denial of service.    6.8  Medium  2017-01-07  2008-09-05  View
57207  CVE-2007-5124  The embedded Internet Explorer server control in AOL Instant Messenger (AIM) 6.5.3.12 and earlier allows remote attackers to execute arbitrary code via unspecified web script or HTML in an instant message, related to AIM"s filtering of "specific tags and attributes" and the lack of Local Machine Zone lockdown. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2007-4901.    6.8  Medium  2017-01-07  2008-09-05  View

Page 16769 of 17672, showing 5 records out of 88360 total, starting on record 83841, ending on 83845

Actions