NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
51991 | CVE-2009-4874 | TalkBack 2.3.14 does not properly restrict access to the edit comment feature (comments.php), which allows remote attackers to modify comments. | 2 | 6.4 | Medium | 2017-01-07 | 2010-05-26 | View | |
53015 | CVE-2007-0798 | Multiple cross-site scripting (XSS) vulnerabilities in Ublog Reload 1.0.5 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) login.asp; and allow remote authenticated users to inject arbitrary web script or HTML via unspecified parameters to (2) badword.asp, (3) polls.asp, and (4) users.asp. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
53527 | CVE-2007-1341 | include/auth/auth.php in Simple Invoices before 2007 03 05 does not use the login system to protect print preview pages for invoices, which might allow attackers to obtain sensitive information. | 2 | 5 | Medium | 2017-01-07 | 2008-11-13 | View | |
53783 | CVE-2007-1599 | wp-login.php in WordPress allows remote attackers to redirect authenticated users to other websites and potentially obtain sensitive information via the redirect_to parameter. | 2 | 6.5 | Medium | 2017-01-07 | 2008-09-05 | View | |
54807 | CVE-2007-2643 | Directory traversal vulnerability in phpThumb.php in PinkCrow Designs Gallery or maGAZIn 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 856 of 17672, showing 5 records out of 88360 total, starting on record 4276, ending on 4280