NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56663  CVE-2007-4543  Cross-site scripting (XSS) vulnerability in enter_bug.cgi in Bugzilla 2.17.1 through 2.20.4, 2.22.x before 2.22.3, and 3.x before 3.0.1 allows remote attackers to inject arbitrary web script or HTML via the buildid field in the "guided form."    4.3  Medium  2017-01-07  2011-03-07  View
57175  CVE-2007-5092  Directory traversal vulnerability in index.php in the Dance Music module for phpNuke, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in an ACCEPT_FILE array parameter to modules.php.    6.8  Medium  2017-01-07  2008-11-15  View
57687  CVE-2007-5624  Cross-site scripting (XSS) vulnerability in Nagios 2.x before 2.10 allows remote attackers to inject arbitrary web script or HTML via unknown vectors to unspecified CGI scripts.    4.3  Medium  2017-01-07  2011-03-07  View
57943  CVE-2007-5918  Cross-site request forgery (CSRF) vulnerability in edit.php in the MS TopSites add-on for PHP-Nuke does not verify that the uname parameter matches the current account, which allows remote authenticated users to change arbitrary accounts or change the SiteTitleName field as an arbitrary user via a modified uname value in an edit action to modules.php.    Medium  2017-01-07  2008-09-05  View
58199  CVE-2007-6196  Cross-site scripting (XSS) vulnerability in util.php in Calacode @Mail before 5.2 allows remote attackers to inject arbitrary web script or HTML via the func parameter.    4.3  Medium  2017-01-07  2008-11-15  View

Page 3153 of 17672, showing 5 records out of 88360 total, starting on record 15761, ending on 15765

Actions