NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
51991  CVE-2009-4874  TalkBack 2.3.14 does not properly restrict access to the edit comment feature (comments.php), which allows remote attackers to modify comments.    6.4  Medium  2017-01-07  2010-05-26  View
53015  CVE-2007-0798  Multiple cross-site scripting (XSS) vulnerabilities in Ublog Reload 1.0.5 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) login.asp; and allow remote authenticated users to inject arbitrary web script or HTML via unspecified parameters to (2) badword.asp, (3) polls.asp, and (4) users.asp.    4.3  Medium  2017-01-07  2008-11-15  View
53527  CVE-2007-1341  include/auth/auth.php in Simple Invoices before 2007 03 05 does not use the login system to protect print preview pages for invoices, which might allow attackers to obtain sensitive information.    Medium  2017-01-07  2008-11-13  View
53783  CVE-2007-1599  wp-login.php in WordPress allows remote attackers to redirect authenticated users to other websites and potentially obtain sensitive information via the redirect_to parameter.    6.5  Medium  2017-01-07  2008-09-05  View
54807  CVE-2007-2643  Directory traversal vulnerability in phpThumb.php in PinkCrow Designs Gallery or maGAZIn 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter.    Medium  2017-01-07  2011-03-07  View

Page 856 of 17672, showing 5 records out of 88360 total, starting on record 4276, ending on 4280

Actions