NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
53367  CVE-2007-1160  webSPELL 4.0, and possibly later versions, allows remote attackers to bypass authentication via a ws_auth cookie, a different vulnerability than CVE-2006-4782.    10  High  2017-01-07  2008-11-15  View
56183  CVE-2007-4052  Cross-site scripting (XSS) vulnerability in utilities/login.asp in nukedit 4.9.7 and earlier allows remote attackers to inject arbitrary web script or HTML via the email parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-07  2008-11-15  View
52344  CVE-2007-0112  SQL injection vulnerability in cats.asp in createauction allows remote attackers to execute arbitrary SQL commands via the catid parameter.    7.5  High  2017-01-07  2008-11-15  View
52600  CVE-2007-0373  Multiple SQL injection vulnerabilities in Joomla! 1.5.0 Beta allow remote attackers to execute arbitrary SQL commands via (1) the searchword parameter in certain files; the where parameter in (2) plugins/search/content.php or (3) plugins/search/weblinks.php; the text parameter in (4) plugins/search/contacts.php, (5) plugins/search/categories.php, or (6) plugins/search/sections.php; or (7) the email parameter in database/table/user.php, which is not properly handled by the check function.    6.8  Medium  2017-01-07  2008-11-15  View
53112  CVE-2007-0896  Cross-site scripting (XSS) vulnerability in the (1) Sage before 1.3.10, and (2) Sage++ extensions for Firefox, allows remote attackers to inject arbitrary web script or HTML via a "<SCRIPT/=""SRC="" sequence in an RSS feed, a different vulnerability than CVE-2006-4712.    4.3  Medium  2017-01-07  2008-11-15  View

Page 2397 of 17672, showing 5 records out of 88360 total, starting on record 11981, ending on 11985

Actions