NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
53090  CVE-2007-0874  Allons_voter 1.0 allows remote attackers to bypass authentication and access certain administrative functionality via a direct request for (1) admin_ajouter.php or (2) admin_supprimer.php. NOTE: this could be leveraged to conduct cross-site scripting (XSS) attacks.    6.8  Medium  2017-01-07  2008-11-15  View
53346  CVE-2007-1139  Unrestricted file upload vulnerability in Cromosoft Simple Plantilla PHP (SPP) allows remote attackers to upload arbitrary scripts via a filename with a double extension.    10  High  2017-01-07  2008-11-15  View
55394  CVE-2007-3241  Cross-site scripting (XSS) vulnerability in blogroll.php in the cordobo-green-park theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the PHP_SELF portion of a URI.    4.3  Medium  2017-01-07  2008-11-15  View
55650  CVE-2007-3499  SlackRoll before 8 accepts gpg exit codes other than 0 and 1 as evidence of a valid signature, which allows remote Slackware mirror sites or man-in-the-middle attackers to cause a denial of service (data inconsistency) or possibly install Trojan horse packages via malformed gpg signatures.    6.4  Medium  2017-01-07  2008-11-15  View
55906  CVE-2007-3759  Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which might leave Safari open to attacks that the user does not expect.    6.8  Medium  2017-01-07  2008-11-15  View

Page 2379 of 17672, showing 5 records out of 88360 total, starting on record 11891, ending on 11895

Actions