NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53761 | CVE-2007-1577 | Directory traversal vulnerability in index.php in GeBlog 0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the GLOBALS[tplname] parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by index.php. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View | |
54017 | CVE-2007-1845 | SQL injection vulnerability in show_event.php in the Expanded Calendar (calendar_panel) 2.00 module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the m_month parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
54273 | CVE-2007-2103 | Multiple PHP remote file inclusion vulnerabilities in my little forum 1.7 allow remote attackers to execute arbitrary PHP code via a URL in the lang parameter to (1) admin.php and (2) timedifference.php. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
54529 | CVE-2007-2362 | Multiple buffer overflows in MyDNS 1.1.0 allow remote attackers to (1) cause a denial of service (daemon crash) and possibly execute arbitrary code via a certain update, which triggers a heap-based buffer overflow in update.c; and (2) cause a denial of service (daemon crash) via unspecified vectors that trigger an off-by-one stack-based buffer overflow in update.c. | 2 | 9 | High | 2017-01-07 | 2011-03-07 | View | |
54785 | CVE-2007-2621 | SQL injection vulnerability in event_view.php in Thyme Calendar 1.3 allows remote attackers to execute arbitrary SQL commands via the eid parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View |
Page 111 of 17672, showing 5 records out of 88360 total, starting on record 551, ending on 555