NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
53634  CVE-2007-1450  SQL injection vulnerability in mainfile.php in PHP-Nuke 8.0 and earlier allows remote attackers to execute arbitrary SQL commands in the Top or News module via the lang parameter.    7.5  High  2017-01-07  2008-09-05  View
56706  CVE-2007-4586  Multiple buffer overflows in php_iisfunc.dll in the iisfunc extension for PHP 5.2.0 and earlier allow context-dependent attackers to execute arbitrary code, probably during Unicode conversion, as demonstrated by a long string in the first argument to the iis_getservicestate function, related to the ServiceId argument to the (1) fnStartService, (2) fnGetServiceState, (3) fnStopService, and possibly other functions.    7.5  High  2017-01-07  2008-09-05  View
57474  CVE-2007-5409  PHP remote file inclusion vulnerability in admin/nuseo_admin_d.php in NuSEO PHP Enterprise 1.6 (NuSEO.PHP), when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the nuseo_dir parameter.    6.8  Medium  2017-01-07  2008-09-05  View
58498  CVE-2007-6503  Multiple unspecified vulnerabilities in Hosting Controller 6.1 Hot fix 3.3 and earlier allow remote authenticated users to (1) import an arbitrary plan via a request to hosting/importhostingplans.asp; or (2) change an arbitrary plan via a request to hosting/AutoSignUpPlans.asp with the (a) save, (b) 30, and (c) d_30 parameters.    5.5  Medium  2017-01-07  2008-09-05  View
60290  CVE-2006-1582  Cross-site scripting (XSS) vulnerability in index.php in Blank"N"Berg 0.2 allows remote attackers to inject arbitrary web script or HTML via the _path parameter. NOTE: this might be resultant from the directory traversal issue.    5.8  Medium  2016-12-20  2008-09-05  View

Page 16847 of 17672, showing 5 records out of 88360 total, starting on record 84231, ending on 84235

Actions