NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 74368 | CVE-2003-1298 | Multiple directory traversal vulnerabilities in siteman.php3 in AnyPortal(php) 12 MAY 00 allow remote attackers to (1) create, (2) delete, (3) save, and (4) upload files by navigating to the root directory and entering a filename beginning with "./.." (dot slash dot dot). | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 74624 | CVE-2003-1554 | Cross-site scripting (XSS) vulnerability in scozbook/add.php in ScozNet ScozBook 1.1 BETA allows remote attackers to inject arbitrary web script or HTML via the (1) username, (2) useremail, (3) aim, (4) msn, (5) sitename and (6) siteaddy variables. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 129 | CVE-2008-0139 | Eval injection vulnerability in loudblog/inc/parse_old.php in Loudblog 0.8.0 and earlier allows remote attackers to execute arbitrary PHP code via the template parameter. | 2 | 6.8 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 385 | CVE-2008-0407 | HTTP File Server (HFS) before 2.2c tags HTTP request log entries with the username sent during HTTP Basic Authentication, regardless of whether authentication succeeded, which might make it more difficult for an administrator to determine who made a remote request. | 2 | 5 | Medium | 2017-01-03 | 2009-09-16 | View | |
| 641 | CVE-2008-0668 | The excel_read_HLINK function in plugins/excel/ms-excel-read.c in Gnome Office Gnumeric before 1.8.1 allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file containing XLS HLINK opcodes, possibly because of an integer signedness error that leads to an integer overflow. NOTE: some of these details are obtained from third party information. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View |
Page 2686 of 17672, showing 5 records out of 88360 total, starting on record 13426, ending on 13430