NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
56582 | CVE-2007-4457 | Directory traversal vulnerability in forumreply.php in Dalai Forum 1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the chemin parameter. | 2 | 6.4 | Medium | 2017-01-07 | 2008-11-15 | View | |
57862 | CVE-2007-5811 | ** DISPUTED ** Directory traversal vulnerability in PageTraiteDownload.php in phpMyConferences 8.0.2 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter. NOTE: this issue is disputed for 8.0.2 by a reliable third party, who notes that the PHP code is syntactically incorrect and cannot be executed. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
58374 | CVE-2007-6379 | BadBlue 2.72b and earlier allows remote attackers to obtain sensitive information via an invalid browse parameter, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
58630 | CVE-2007-6635 | FAQMasterFlexPlus, possibly 1.5 or 1.52, stores the admin password in cleartext in a database, which might allow context-dependent attackers to obtain the password via unspecified database access. | 2 | 6.4 | Medium | 2017-01-07 | 2008-09-05 | View | |
59142 | CVE-2006-0404 | Note-A-Day Weblog 2.2 stores sensitive data under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to archive/.phpass-admin, which contains encrypted passwords. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 255 of 17672, showing 5 records out of 88360 total, starting on record 1271, ending on 1275