NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
81299 | CVE-2002-2348 | Cross-site scripting (XSS) vulnerability in athcgi.exe in Authoria HR allows remote attackers to inject arbitrary web script or HTML via the command parameter. | 2 | 4.3 | Medium | 2017-01-05 | 2008-09-05 | View | |
52627 | CVE-2007-0400 | Cross-site scripting (XSS) vulnerability in admin/memberlist.php in Easebay Resources Login Manager 3.0 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
56979 | CVE-2007-4889 | The MySQL extension in PHP 5.2.4 and earlier allows remote attackers to bypass safe_mode and open_basedir restrictions via the MySQL (1) LOAD_FILE, (2) INTO DUMPFILE, and (3) INTO OUTFILE functions, a different issue than CVE-2007-3997. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
57747 | CVE-2007-5690 | ** DISPUTED ** Buffer overflow in sethdlc.c in the Asterisk Zaptel 1.4.5.1 might allow local users to gain privileges via a long device name (interface name) in the ifr_name field. NOTE: the vendor disputes this issue, stating that the application requires root access, so privilege boundaries are not crossed. | 2 | 4.6 | Medium | 2017-01-07 | 2008-09-05 | View | |
59283 | CVE-2006-0546 | Unspecified vulnerability in index.php in a certain application available from /v1/tr/portfoy.php on www.egeinternet.com allows remote attackers to execute arbitrary code via "evilcode" in the key parameter, possibly a PHP remote file include vulnerability in which the attack vector is a URL in the key parameter. NOTE: it is not clear whether this vulnerability is associated with an online service or application service provider. If so, then it should not be included in CVE. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 987 of 17672, showing 5 records out of 88360 total, starting on record 4931, ending on 4935