NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
180  CVE-2008-0195  WordPress 2.0.11 and earlier allows remote attackers to obtain sensitive information via an empty value of the page parameter to certain PHP scripts under wp-admin/, which reveals the path in various error messages.    Medium  2017-01-03  2008-09-05  View
179  CVE-2008-0194  Directory traversal vulnerability in wp-db-backup.php in WordPress 2.0.3 and earlier allows remote attackers to read arbitrary files, delete arbitrary files, and cause a denial of service via a .. (dot dot) in the backup parameter in a wp-db-backup.php action to wp-admin/edit.php. NOTE: this might be the same as CVE-2006-5705.1.    7.5  High  2017-01-03  2008-09-05  View
178  CVE-2008-0193  Cross-site scripting (XSS) vulnerability in wp-db-backup.php in WordPress 2.0.11 and earlier, and possibly 2.1.x through 2.3.x, allows remote attackers to inject arbitrary web script or HTML via the backup parameter in a wp-db-backup.php action to wp-admin/edit.php.    4.3  Medium  2017-01-03  2008-09-05  View
177  CVE-2008-0192  Multiple cross-site scripting (XSS) vulnerabilities in WordPress 2.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via the popuptitle parameter to (1) wp-admin/post.php or (2) wp-admin/page-new.php.    4.3  Medium  2017-01-03  2008-09-05  View
176  CVE-2008-0191  WordPress 2.2.x and 2.3.x allows remote attackers to obtain sensitive information via an invalid p parameter in an rss2 action to the default URI, which reveals the full path and the SQL database structure.    Medium  2017-01-03  2008-09-05  View

Page 17637 of 17672, showing 5 records out of 88360 total, starting on record 88181, ending on 88185

Actions