NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54135 | CVE-2007-1965 | Multiple cross-site scripting (XSS) vulnerabilities in eXV2 CMS 2.0.4.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the set_lang parameter to (1) archive.php, (2) article.php, (3) index.php, or (4) topics.php. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
56439 | CVE-2007-4314 | pixlie.php in Pixlie 1.7 allows remote attackers to trigger the reading and JPEG image processing of files in a remote directory tree via a URL in the root parameter. NOTE: this can be leveraged for traffic amplification or other denial of service. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
57207 | CVE-2007-5124 | The embedded Internet Explorer server control in AOL Instant Messenger (AIM) 6.5.3.12 and earlier allows remote attackers to execute arbitrary code via unspecified web script or HTML in an instant message, related to AIM"s filtering of "specific tags and attributes" and the lack of Local Machine Zone lockdown. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2007-4901. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
58231 | CVE-2007-6228 | Stack-based buffer overflow in the Helper class in the yt.ythelper.2 ActiveX control in Yahoo! Toolbar 1.4.1 allows remote attackers to cause a denial of service (browser crash) via a long argument to the c method. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
59511 | CVE-2006-0781 | Directory traversal vulnerability in weblog.pl in PerlBlog 1.09b and earlier allows remote attackers to read certain files via the month parameter. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 792 of 17672, showing 5 records out of 88360 total, starting on record 3956, ending on 3960