NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56297  CVE-2007-4166  Cross-site scripting (XSS) vulnerability in index.php in the Unnamed theme 1.217, and Special Edition (SE) 1.02, before 20070804 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter, possibly a related issue to CVE-2007-2757, CVE-2007-4014, and CVE-2007-4165. NOTE: some of these details are obtained from third party information.    Medium  2017-01-07  2008-11-15  View
56553  CVE-2007-4428  Lhaz 1.33 allows remote attackers to execute arbitrary code via unknown vectors, as actively exploited in August 2007 by the Exploit-LHAZ.a gzip file, a different issue than CVE-2006-4116.    6.8  Medium  2017-01-07  2011-03-07  View
57065  CVE-2007-4976  Directory traversal vulnerability in viewlog.php in Coppermine Photo Gallery (CPG) 1.4.12 and earlier allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the log parameter.    6.5  Medium  2017-01-07  2011-03-07  View
57833  CVE-2007-5782  Directory traversal vulnerability in dl.php in FireConfig 0.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.    Medium  2017-01-07  2011-03-07  View
58601  CVE-2007-6606  OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function.    Medium  2017-01-07  2008-11-15  View

Page 16883 of 17672, showing 5 records out of 88360 total, starting on record 84411, ending on 84415

Actions