NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56663 | CVE-2007-4543 | Cross-site scripting (XSS) vulnerability in enter_bug.cgi in Bugzilla 2.17.1 through 2.20.4, 2.22.x before 2.22.3, and 3.x before 3.0.1 allows remote attackers to inject arbitrary web script or HTML via the buildid field in the "guided form." | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 57175 | CVE-2007-5092 | Directory traversal vulnerability in index.php in the Dance Music module for phpNuke, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in an ACCEPT_FILE array parameter to modules.php. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57687 | CVE-2007-5624 | Cross-site scripting (XSS) vulnerability in Nagios 2.x before 2.10 allows remote attackers to inject arbitrary web script or HTML via unknown vectors to unspecified CGI scripts. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 57943 | CVE-2007-5918 | Cross-site request forgery (CSRF) vulnerability in edit.php in the MS TopSites add-on for PHP-Nuke does not verify that the uname parameter matches the current account, which allows remote authenticated users to change arbitrary accounts or change the SiteTitleName field as an arbitrary user via a modified uname value in an edit action to modules.php. | 2 | 6 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 58199 | CVE-2007-6196 | Cross-site scripting (XSS) vulnerability in util.php in Calacode @Mail before 5.2 allows remote attackers to inject arbitrary web script or HTML via the func parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 3153 of 17672, showing 5 records out of 88360 total, starting on record 15761, ending on 15765