NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
81015 | CVE-2002-2064 | isadmin.php in PhpWebGallery 1.0 allows remote attackers to gain administrative access via by setting the photo_login cookie to pseudo. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
81271 | CVE-2002-2320 | MySimpleNews 1.0 allows remote attackers to delete arbitrary email messages via a direct request to vider.php3. | 2 | 7.8 | High | 2017-01-05 | 2008-09-05 | View | |
54135 | CVE-2007-1965 | Multiple cross-site scripting (XSS) vulnerabilities in eXV2 CMS 2.0.4.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the set_lang parameter to (1) archive.php, (2) article.php, (3) index.php, or (4) topics.php. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
56439 | CVE-2007-4314 | pixlie.php in Pixlie 1.7 allows remote attackers to trigger the reading and JPEG image processing of files in a remote directory tree via a URL in the root parameter. NOTE: this can be leveraged for traffic amplification or other denial of service. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
57207 | CVE-2007-5124 | The embedded Internet Explorer server control in AOL Instant Messenger (AIM) 6.5.3.12 and earlier allows remote attackers to execute arbitrary code via unspecified web script or HTML in an instant message, related to AIM"s filtering of "specific tags and attributes" and the lack of Local Machine Zone lockdown. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2007-4901. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 16769 of 17672, showing 5 records out of 88360 total, starting on record 83841, ending on 83845