NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
56297 | CVE-2007-4166 | Cross-site scripting (XSS) vulnerability in index.php in the Unnamed theme 1.217, and Special Edition (SE) 1.02, before 20070804 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter, possibly a related issue to CVE-2007-2757, CVE-2007-4014, and CVE-2007-4165. NOTE: some of these details are obtained from third party information. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
56553 | CVE-2007-4428 | Lhaz 1.33 allows remote attackers to execute arbitrary code via unknown vectors, as actively exploited in August 2007 by the Exploit-LHAZ.a gzip file, a different issue than CVE-2006-4116. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
57065 | CVE-2007-4976 | Directory traversal vulnerability in viewlog.php in Coppermine Photo Gallery (CPG) 1.4.12 and earlier allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the log parameter. | 2 | 6.5 | Medium | 2017-01-07 | 2011-03-07 | View | |
57833 | CVE-2007-5782 | Directory traversal vulnerability in dl.php in FireConfig 0.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
58601 | CVE-2007-6606 | OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 16883 of 17672, showing 5 records out of 88360 total, starting on record 84411, ending on 84415