NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
51518  CVE-2009-4395  Cross-site scripting (XSS) vulnerability in the Random Prayer 2 (ste_prayer2) extension 0.0.3 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-07  2009-12-23  View
53310  CVE-2007-1102  Photostand 1.2.0 allows remote attackers to obtain sensitive information via a " (quote) character in (1) a PHPSESSID cookie or (2) the id parameter in an article action in index.php, which reveal the path in various error messages.    Medium  2017-01-07  2011-03-07  View
53822  CVE-2007-1638  Multiple cross-site request forgery (CSRF) vulnerabilities in the check_csrftoken function in lib/lib.inc.php in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allow remote attackers to perform unauthorized actions as an arbitrary user via the (1) Projects, (2) Contacts, (3) Helpdesk, (4) Notes, (5) Search, (6) Mail, or (7) Filemanager module; the (9) summary page; or unspecified other files.    6.8  Medium  2017-01-07  2008-11-13  View
54078  CVE-2007-1908  PHP file inclusion vulnerability in php121db.php in PHP121 Instant Messenger 2.2 allows remote attackers to execute arbitrary PHP code via a UNC share pathname or a local file pathname in the php121dir parameter, which is accessed by the file_exists function.    6.8  Medium  2017-01-07  2011-03-07  View
54334  CVE-2007-2164  Konqueror 3.5.5 release 45.4 allows remote attackers to cause a denial of service (browser crash or abort) via JavaScript that matches a regular expression against a long string, as demonstrated using /(.)*/.    Medium  2017-01-07  2008-09-05  View

Page 2261 of 17672, showing 5 records out of 88360 total, starting on record 11301, ending on 11305

Actions