NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57474 | CVE-2007-5409 | PHP remote file inclusion vulnerability in admin/nuseo_admin_d.php in NuSEO PHP Enterprise 1.6 (NuSEO.PHP), when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the nuseo_dir parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
58498 | CVE-2007-6503 | Multiple unspecified vulnerabilities in Hosting Controller 6.1 Hot fix 3.3 and earlier allow remote authenticated users to (1) import an arbitrary plan via a request to hosting/importhostingplans.asp; or (2) change an arbitrary plan via a request to hosting/AutoSignUpPlans.asp with the (a) save, (b) 30, and (c) d_30 parameters. | 2 | 5.5 | Medium | 2017-01-07 | 2008-09-05 | View | |
60290 | CVE-2006-1582 | Cross-site scripting (XSS) vulnerability in index.php in Blank"N"Berg 0.2 allows remote attackers to inject arbitrary web script or HTML via the _path parameter. NOTE: this might be resultant from the directory traversal issue. | 2 | 5.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
60802 | CVE-2006-2097 | SQL injection vulnerability in func_msg.php in Invision Power Board (IPB) 2.1.4 allows remote attackers to execute arbitrary SQL commands via the from_contact field in a private message (PM). | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62594 | CVE-2006-3936 | system/workplace/editors/editor.jsp in Alkacon OpenCms before 6.2.2 allows remote authenticated users to read the source code of arbitrary JSP files by specifying the file in the resource parameter, as demonstrated using index.jsp. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 870 of 17672, showing 5 records out of 88360 total, starting on record 4346, ending on 4350