NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53634 | CVE-2007-1450 | SQL injection vulnerability in mainfile.php in PHP-Nuke 8.0 and earlier allows remote attackers to execute arbitrary SQL commands in the Top or News module via the lang parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
56706 | CVE-2007-4586 | Multiple buffer overflows in php_iisfunc.dll in the iisfunc extension for PHP 5.2.0 and earlier allow context-dependent attackers to execute arbitrary code, probably during Unicode conversion, as demonstrated by a long string in the first argument to the iis_getservicestate function, related to the ServiceId argument to the (1) fnStartService, (2) fnGetServiceState, (3) fnStopService, and possibly other functions. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
57474 | CVE-2007-5409 | PHP remote file inclusion vulnerability in admin/nuseo_admin_d.php in NuSEO PHP Enterprise 1.6 (NuSEO.PHP), when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the nuseo_dir parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
58498 | CVE-2007-6503 | Multiple unspecified vulnerabilities in Hosting Controller 6.1 Hot fix 3.3 and earlier allow remote authenticated users to (1) import an arbitrary plan via a request to hosting/importhostingplans.asp; or (2) change an arbitrary plan via a request to hosting/AutoSignUpPlans.asp with the (a) save, (b) 30, and (c) d_30 parameters. | 2 | 5.5 | Medium | 2017-01-07 | 2008-09-05 | View | |
60290 | CVE-2006-1582 | Cross-site scripting (XSS) vulnerability in index.php in Blank"N"Berg 0.2 allows remote attackers to inject arbitrary web script or HTML via the _path parameter. NOTE: this might be resultant from the directory traversal issue. | 2 | 5.8 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16847 of 17672, showing 5 records out of 88360 total, starting on record 84231, ending on 84235