NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
81240 | CVE-2002-2289 | soinfo.php in BadBlue 1.7.1 calls the phpinfo function, which allows remote attackers to gain sensitive information including ODBC passwords. | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
52568 | CVE-2007-0341 | Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.8.1 and earlier, when Microsoft Internet Explorer 6 is used, allows remote attackers to inject arbitrary web script or HTML via a javascript: URI in a CSS style in the convcharset parameter to the top-level URI, a different vulnerability than CVE-2005-0992. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
53592 | CVE-2007-1408 | Multiple vulnerabilities in (1) bank.php, (2) landfill.php, (3) outposts.php, (4) tribes.php, (5) house.php, (6) tribearmor.php, (7) tribeastral.php, (8) tribeware.php, and (9) includes/head.php in Bartek Jasicki Vallheru before 1.3 beta have unknown impact and remote attack vectors, probably related to large integer values containing more than 15 digits. NOTE: the original vendor report is for integer overflows, but this is probably an incorrect usage of the term. | 2 | 10 | High | 2017-01-07 | 2008-09-05 | View | |
54360 | CVE-2007-2190 | PHP remote file inclusion vulnerability in admin/public/webpages.php in Eba News 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the filename parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
57944 | CVE-2007-5919 | MyWebFTP, possibly 5.3.2, stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain an MD5 password hash via a direct request for pass/pass.txt. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 562 of 17672, showing 5 records out of 88360 total, starting on record 2806, ending on 2810