NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 57070 | CVE-2007-4981 | Cross-site scripting (XSS) vulnerability in the save function in Obedit 3.03 allows user-assisted remote attackers to inject arbitrary web script or HTML via unknown vectors, as demonstrated by a SCRIPT element in an unspecified context when saving a document. NOTE: because the details of the attack are uncertain, it is unclear whether this crosses privilege boundaries. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57838 | CVE-2007-5787 | Micro Login System 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing a password via a direct request for userpwd.txt. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58606 | CVE-2007-6611 | Cross-site scripting (XSS) vulnerability in view.php in Mantis before 1.1.0 allows remote attackers to inject arbitrary web script or HTML via a filename, related to bug_report.php. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 63214 | CVE-2006-4581 | Unrestricted file upload vulnerability in The Address Book 1.04e validates the Content-Type header but not the file extension, which allows remote attackers to upload arbitrary PHP scripts. | 2 | 5 | Medium | 2016-12-20 | 2008-11-15 | View | |
| 53231 | CVE-2007-1023 | SQL injection vulnerability in pop_profile.asp in Snitz Forums 2000 3.1 SR4 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View |
Page 2533 of 17672, showing 5 records out of 88360 total, starting on record 12661, ending on 12665