NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54004 | CVE-2007-1832 | web-app.org WebAPP before 0.9.9.6 allows remote authenticated users to upload certain files (1) via a crafted filename or (2) by "using percent encoding in forms." | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
54260 | CVE-2007-2090 | Cross-site scripting (XSS) vulnerability in index.php in TuMusika Evolution 1.6 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
54516 | CVE-2007-2349 | Cross-site scripting (XSS) vulnerability in Invision Power Board (IP.Board) 2.1.x and 2.2.x allows remote attackers to inject arbitrary web script or HTML by uploading crafted images or PDF files. | 2 | 5.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
54772 | CVE-2007-2608 | PHP remote file inclusion vulnerability in lib/smarty/SmartyFU.class.php in Miplex2 Alpha 1 allows remote attackers to execute arbitrary PHP code via a URL in the system[smarty][dir] parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
55028 | CVE-2007-2868 | Multiple vulnerabilities in the JavaScript engine for Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, Thunderbird 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and SeaMonkey 1.0.9 and 1.1.2 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors that trigger memory corruption. | 2 | 9.3 | High | 2017-01-07 | 2012-11-05 | View |
Page 17001 of 17672, showing 5 records out of 88360 total, starting on record 85001, ending on 85005