NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
53770  CVE-2007-1586  ZynOS 3.40 allows remote attackers to cause a denial of service (link restart) by sending a request for the name M via the SMB Mail Slot Protocol.    7.8  High  2017-01-07  2008-11-13  View
54027  CVE-2007-1855  Multiple PHP remote file inclusion vulnerabilities in smarty/smarty_class.php in Shop-Script FREE allow remote attackers to execute arbitrary PHP code via a URL in the (1) _smarty_compile_path, (2) smarty_compile_path, (3) get_plugin_filepath, (4) smarty_dir, and (5) filename parameters. NOTE: this issue might be related to CVE-2006-7105.    7.5  High  2017-01-07  2008-11-13  View
64268  CVE-2006-5674  Multiple PHP remote file inclusion vulnerabilities in miniBB 2.0.2 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the pathToFiles parameter to (1) bb_func_forums.php, (2) bb_functions.php, or (3) the RSS plugin.    7.5  High  2016-12-20  2008-11-13  View
52750  CVE-2007-0526  Multiple cross-site scripting (XSS) vulnerabilities in Bitweaver 1.3.1 allow remote attackers to inject arbitrary web script or HTML via the URL (PATH_INFO) to (1) articles/edit.php, (2) articles/list.php, (3) blogs/list_blogs.php, or (4) blogs/rankings.php.    4.3  Medium  2017-01-07  2008-11-13  View
54543  CVE-2007-2376  The Dojo framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain the data via a web page that retrieves the data through a URL in the SRC attribute of a SCRIPT element and captures the data using other JavaScript code, aka "JavaScript Hijacking."    Medium  2017-01-07  2008-11-13  View

Page 2225 of 17672, showing 5 records out of 88360 total, starting on record 11121, ending on 11125

Actions