NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
6390 | CVE-2008-6659 | Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.0 before 1.0.15 and 1.1 before 1.1.7 allows remote authenticated users to configure arbitrary local files for execution via directory traversal sequences in the value of the theme_dir field during a jsoption action, related to Sources/QueryString.php and Sources/Themes.php, as demonstrated by a local .gif file in attachments/ with PHP code that was uploaded through a profile2 action to index.php. | 2 | 5.5 | Medium | 2017-01-03 | 2009-07-23 | View | |
71926 | CVE-2004-1547 | The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to cause a denial of service (application crash) via a long filename, possibly triggering a buffer overflow. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6646 | CVE-2008-6915 | Cross-site scripting (XSS) vulnerability in view_prop_details.php in Zeeways ZEEPROPERTY 1.0 allows remote attackers to inject arbitrary web script or HTML via the propid parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-08-10 | View | |
72182 | CVE-2004-1804 | wMCam server 2.1.348 allows remote attackers to cause a denial of service (no new connections) via multiple malformed HTTP requests without the GET command. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
6902 | CVE-2008-7171 | Multiple cross-site scripting (XSS) vulnerabilities in Lightweight news portal (LNP) 1.0b allow remote attackers to inject arbitrary web script or HTML via the (1) photo parameter to show_photo.php, (2) potd parameter to show_potd.php, or (3) the Current question field in a vote action to admin.php. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-08 | View |
Page 17323 of 17672, showing 5 records out of 88360 total, starting on record 86611, ending on 86615