NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52486  CVE-2007-0258  Cross-site scripting (XSS) vulnerability in index.php in (1) Fastilo 2.0 and (2) Open Solution Quick.Cart 2.0 allows remote attackers to inject arbitrary web script or HTML via the p parameter. NOTE: some of these details are obtained from third party information.    6.8  Medium  2017-01-07  2011-03-07  View
52998  CVE-2007-0778  The page cache feature in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 can generate hash collisions that cause page data to be appended to the wrong page cache, which allows remote attackers to obtain sensitive information or enable further attack vectors when the target page is reloaded from the cache.    5.4  Medium  2017-01-07  2011-03-07  View
53254  CVE-2007-1046  Dem_trac allows remote attackers to read log file contents via a direct request for /anc_sit.txt.    Medium  2017-01-07  2013-07-21  View
53766  CVE-2007-1582  The resource system in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows context-dependent attackers to execute arbitrary code by interrupting certain functions in the GD (ext/gd) extension and unspecified other extensions via a userspace error handler, which can be used to destroy and modify internal resources.    6.8  Medium  2017-01-07  2008-09-05  View
54022  CVE-2007-1850  Directory traversal vulnerability in classes/captcha/captcha.jpg.php in Drake CMS allows remote attackers to read arbitrary files or list arbitrary directories, and obtain the installation path, via a .. (dot dot) in the d_private parameter. NOTE: Drake CMS has only a beta version available, and the vendor has previously stated "We do not consider security reports valid until the first official release of Drake CMS."    Medium  2017-01-07  2008-09-05  View

Page 253 of 17672, showing 5 records out of 88360 total, starting on record 1261, ending on 1265

Actions