NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57551 | CVE-2007-5486 | dotProject before 2.1 does not properly check privileges when invoking the Companies module, which allows remote attackers to access this module via a crafted URL. NOTE: some of these details are obtained from third party information. | 2 | 6.4 | Medium | 2017-01-07 | 2008-09-05 | View | |
58063 | CVE-2007-6042 | PHP remote file inclusion vulnerability in fehler.inc.php in SWSoft Confixx Professional 3.2.1 allows remote attackers to execute arbitrary PHP code via a URL in an unspecified parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
58319 | CVE-2007-6324 | PHP remote file inclusion vulnerability in head.php in CityWriter 0.9.7 allows remote attackers to execute arbitrary PHP code via a URL in the path parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
59599 | CVE-2006-0870 | SQL injection vulnerability in pages.asp in Mini-Nuke CMS System 1.8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: version 2.3 was later reported to be vulnerable as well. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
59855 | CVE-2006-1133 | Multiple cross-site scripting (XSS) vulnerabilities in vbzoom 1.11 allow remote attackers to inject arbitrary web script or HTML via the UserID parameter to (1) comment.php or (2) contact.php. NOTE: the profile.php/UserName vector is already covered by CVE-2005-2441. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17355 of 17672, showing 5 records out of 88360 total, starting on record 86771, ending on 86775