NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
57474  CVE-2007-5409  PHP remote file inclusion vulnerability in admin/nuseo_admin_d.php in NuSEO PHP Enterprise 1.6 (NuSEO.PHP), when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the nuseo_dir parameter.    6.8  Medium  2017-01-07  2008-09-05  View
58498  CVE-2007-6503  Multiple unspecified vulnerabilities in Hosting Controller 6.1 Hot fix 3.3 and earlier allow remote authenticated users to (1) import an arbitrary plan via a request to hosting/importhostingplans.asp; or (2) change an arbitrary plan via a request to hosting/AutoSignUpPlans.asp with the (a) save, (b) 30, and (c) d_30 parameters.    5.5  Medium  2017-01-07  2008-09-05  View
60290  CVE-2006-1582  Cross-site scripting (XSS) vulnerability in index.php in Blank"N"Berg 0.2 allows remote attackers to inject arbitrary web script or HTML via the _path parameter. NOTE: this might be resultant from the directory traversal issue.    5.8  Medium  2016-12-20  2008-09-05  View
60802  CVE-2006-2097  SQL injection vulnerability in func_msg.php in Invision Power Board (IPB) 2.1.4 allows remote attackers to execute arbitrary SQL commands via the from_contact field in a private message (PM).    7.5  High  2016-12-20  2008-09-05  View
62594  CVE-2006-3936  system/workplace/editors/editor.jsp in Alkacon OpenCms before 6.2.2 allows remote authenticated users to read the source code of arbitrary JSP files by specifying the file in the resource parameter, as demonstrated using index.jsp.    Medium  2016-12-20  2008-09-05  View

Page 870 of 17672, showing 5 records out of 88360 total, starting on record 4346, ending on 4350

Actions