NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 57711 | CVE-2007-5648 | Multiple cross-site scripting (XSS) vulnerabilities in rnote.php in rNote 0.9.7.5 allow remote attackers to inject arbitrary web script or HTML via the (1) d or the (2) u parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 53360 | CVE-2007-1153 | Multiple PHP remote file inclusion vulnerabilities in CutePHP CuteNews 1.3.6 allow remote attackers to execute arbitrary PHP code via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: issue might overlap CVE-2004-1660 or CVE-2006-4445. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 53105 | CVE-2007-0889 | Kiwi CatTools before 3.2.0 beta uses weak encryption ("reversible encoding") for passwords, account names, and IP addresses in kiwidb-cattools.kdb, which might allow local users to gain sensitive information by decrypting the file. NOTE: this issue could be leveraged with a directory traversal vulnerability for a remote attack vector. | 2 | 4.6 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 54897 | CVE-2007-2733 | Unrestricted file upload vulnerability in Jetbox CMS allows remote authenticated users with author privileges to upload arbitrary scripts via unspecified vectors, which can be accessed in webfiles/. NOTE: this issue might be a duplicate of CVE-2004-1448. | 2 | 6 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56945 | CVE-2007-4834 | Multiple PHP remote file inclusion vulnerabilities in phpRealty 0.02 allow remote attackers to execute arbitrary PHP code via a URL in the MGR parameter to (1) index.php, (2) p_ins.php, and (3) u_ins.php in manager/admin/. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View |
Page 2392 of 17672, showing 5 records out of 88360 total, starting on record 11956, ending on 11960