NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 55837 | CVE-2007-3688 | Multiple cross-site request forgery (CSRF) vulnerabilities in DotClear 1.2.6 allow remote attackers to perform actions as arbitrary users via the (1) tool_url parameter to ecrire/tools.php and multiple fields on the (2) blogconf, (3) blogroll, (4) ecrire/redacteur.php, and (5) ecrire/user_prefs.php pages. | 2 | 2.6 | Low | 2017-01-07 | 2012-11-05 | View | |
| 57629 | CVE-2007-5564 | Multiple cross-site scripting (XSS) vulnerabilities in NSSboard (formerly Simple PHP Forum) 6.1 allow remote attackers to inject arbitrary web script or HTML via (1) HTML tags when BBcode is disabled; or the (2) user, (3) email, or (4) Real Name fields in a profile. | 2 | 2.6 | Low | 2017-01-07 | 2008-09-05 | View | |
| 59677 | CVE-2006-0950 | unalz 0.53 allows user-assisted attackers to overwrite arbitrary files via an ALZ archive with ".." (dot dot) sequences in a filename. | 2 | 2.6 | Low | 2016-12-20 | 2016-10-17 | View | |
| 60445 | CVE-2006-1740 | Mozilla Firefox 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to spoof secure site indicators such as the locked icon by opening the trusted site in a popup window, then changing the location to a malicious site. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
| 61213 | CVE-2006-2518 | Cross-site scripting (XSS) vulnerability in phpwcms 1.2.5-DEV allows remote attackers to inject arbitrary web script or HTML via the BL[be_cnt_plainhtml] parameter to include/inc_tmpl/content/cnt6.inc.php. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View |
Page 2276 of 17672, showing 5 records out of 88360 total, starting on record 11376, ending on 11380