NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56861  CVE-2007-4744  PHP remote file inclusion vulnerability in environment.php in AnyInventory 1.9.1 and 2.0, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the DIR_PREFIX parameter.    6.8  Medium  2017-01-07  2008-09-05  View
57629  CVE-2007-5564  Multiple cross-site scripting (XSS) vulnerabilities in NSSboard (formerly Simple PHP Forum) 6.1 allow remote attackers to inject arbitrary web script or HTML via (1) HTML tags when BBcode is disabled; or the (2) user, (3) email, or (4) Real Name fields in a profile.    2.6  Low  2017-01-07  2008-09-05  View
61725  CVE-2006-3041  ** DISPUTED ** PHP remote file inclusion vulnerability in Ltwcalendar/calendar.php in Codewalkers Ltwcalendar 4.1.3 allows remote attackers to execute arbitrary PHP code via a URL in the ltw_config[include_dir] parameter. NOTE: CVE disputes this claim, since the $ltw_config[include_dir] variable is defined as a static value in an include file before it is referenced in an include() statement.    7.5  High  2016-12-20  2008-09-05  View
62237  CVE-2006-3563  Cross-site scripting (XSS) vulnerability in gallery/thumb.php in Winged Gallery 1.0 allows remote attackers to inject arbitrary web script or HTML via the image parameter.    2.6  Low  2016-12-20  2008-09-05  View
62749  CVE-2006-4092  Simpliciti Locked Browser does not properly limit a user"s actions to ones within the intended Internet Explorer environment, which allows local users to perform unauthorized actions by visiting a web site that executes a JavaScript window.blur loop to remove focus from the browser window, then pressing CTRL-SHIFT-ESC to invoke the Task Manager.    3.6  Low  2016-12-20  2008-09-05  View

Page 210 of 17672, showing 5 records out of 88360 total, starting on record 1046, ending on 1050

Actions