NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55918  CVE-2007-3773  Cross-site request forgery (CSRF) vulnerability in the Email-Template module in Generic YouTube Clone Script allows remote attackers to upload files with arbitrary file types to templates/emails/ as administrators.    9.3  High  2017-01-07  2008-11-15  View
56942  CVE-2007-4831  Multiple cross-site scripting (XSS) vulnerabilities in account_settings.php in TorrentTrader 1.07 allow remote attackers to inject arbitrary web script or HTML via the (1) avatar and (2) title parameters.    2.6  Low  2017-01-07  2008-11-15  View
57454  CVE-2007-5389  ** DISPUTED ** PHP remote file inclusion vulnerability in preview.php in the swMenuFree (com_swmenufree) 4.6 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: a reliable third party disputes this issue because preview.php tests a certain constant to prevent direct requests.    6.8  Medium  2017-01-07  2008-11-15  View
55919  CVE-2007-3774  Dvbbs 7.1.0 SP1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for Data/Dvbbs7.mdb.    7.8  High  2017-01-07  2008-11-15  View
57455  CVE-2007-5390  PHP remote file inclusion vulnerability in index.php in PicoFlat CMS 0.4.14 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the pagina parameter.    6.8  Medium  2017-01-07  2008-11-15  View

Page 2391 of 17672, showing 5 records out of 88360 total, starting on record 11951, ending on 11955

Actions