NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 53318 | CVE-2007-1110 | Directory traversal vulnerability in data/showcode.php in ActiveCalendar 1.2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 53574 | CVE-2007-1390 | Multiple cross-site scripting (XSS) vulnerabilities in dynaliens 2.0 and 2.1 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) recherche.php3 or (2) ajouter.php3. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 53830 | CVE-2007-1646 | Multiple cross-site scripting (XSS) vulnerabilities in SubHub 2.3.0 allow remote attackers to inject arbitrary web script or HTML via (1) the searchtext parameter to (a) /search, or the (2) message parameter to (b) /calendar or (c) /subscribe. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 54342 | CVE-2007-2172 | A typo in Linux kernel 2.6 before 2.6.21-rc6 and 2.4 before 2.4.35 causes RTA_MAX to be used as an array size instead of RTN_MAX, which leads to an "out of bound access" by the (1) dn_fib_props (dn_fib.c, DECNet) and (2) fib_props (fib_semantics.c, IPv4) functions. | 2 | 4.7 | Medium | 2017-01-07 | 2012-11-05 | View | |
| 54598 | CVE-2007-2431 | Dynamic variable evaluation vulnerability in shared/config/tce_config.php in TCExam 4.0.011 and earlier allows remote attackers to conduct cross-site scripting (XSS) and possibly other attacks by modifying critical variables such as $_SERVER, as demonstrated by injecting web script via the _SERVER[SCRIPT_NAME] parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 2554 of 17672, showing 5 records out of 88360 total, starting on record 12766, ending on 12770