NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53006 | CVE-2007-0789 | SQL injection vulnerability in Mambo before 4.5.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors in cancel edit functions, possibly related to the id parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-08-05 | View | |
53262 | CVE-2007-1054 | Cross-site scripting (XSS) vulnerability in the AJAX features in index.php in MediaWiki 1.6.x through 1.9.2, when $wgUseAjax is enabled, allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded value of the rs parameter, which is processed by Internet Explorer. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
53518 | CVE-2007-1328 | Cross-site scripting (XSS) vulnerability in formulaire.php in Bernard JOLY BJ Webring allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter related to the add link menu. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
53774 | CVE-2007-1590 | The Grandstream BudgeTone 200 IP phone, with program 1.1.1.14 and bootloader 1.1.1.5, allows remote attackers to cause a denial of service (device crash) via SIP (1) INVITE, (2) CANCEL, or unspecified other messages with a WWW-Authenticate header containing a crafted Digest domain. | 2 | 7.8 | High | 2017-01-07 | 2011-03-07 | View | |
54030 | CVE-2007-1859 | XScreenSaver 4.10, when using a remote directory service for credentials, does not properly handle the results from the getpwuid function in drivers/lock.c when there is no network connectivity, which causes XScreenSaver to crash and unlock the screen and allows local users to bypass authentication. | 2 | 4.6 | Medium | 2017-01-07 | 2012-11-05 | View |
Page 1010 of 17672, showing 5 records out of 88360 total, starting on record 5046, ending on 5050