NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54274  CVE-2007-2104  Multiple directory traversal vulnerabilities in iXon CMS 0.30 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme_url parameter to (1) index.php, (2) page.php, (3) search.php, (4) single.php, and (5) archives.php.    7.5  High  2017-01-07  2008-11-13  View
54019  CVE-2007-1847  SQL injection vulnerability in viewcat.php in the Repository module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter.    7.5  High  2017-01-07  2008-11-13  View
54275  CVE-2007-2105  Directory traversal vulnerability in admin/index.php in Monkey CMS 0.0.3 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the admin_skin parameter.    7.5  High  2017-01-07  2008-11-13  View
52741  CVE-2007-0517  Scriptsez Random PHP Quote 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain password information via a direct request for pwd.txt.    7.5  High  2017-01-07  2008-11-13  View
52742  CVE-2007-0518  Scriptsez Smart PHP Subscriber (aka subscribe) stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain encoded passwords via a direct request for pwd.txt.    7.5  High  2017-01-07  2008-11-13  View

Page 2224 of 17672, showing 5 records out of 88360 total, starting on record 11116, ending on 11120

Actions