NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55312  CVE-2007-3158  download_script.asp in ASP Folder Gallery allows remote attackers to read arbitrary files via a filename in the file parameter.    Medium  2017-01-07  2008-11-15  View
55568  CVE-2007-3416  Multiple cross-site request forgery (CSRF) vulnerabilities in the administration of (1) polls, (2) profiles, (3) IP bans, and (4) forums in (a) web-app.org WebAPP 0.8 through 0.9.9.6; and (b) web-app.net WebAPP 0.9.9.3.3, 0.9.9.3.4, and 2007; allow remote attackers to perform deletions as administrators.    Medium  2017-01-07  2008-09-05  View
55824  CVE-2007-3675  Multiple format string vulnerabilities in the kavwebscan.CKAVWebScan ActiveX control (kavwebscan.dll) in Kaspersky Online Scanner before 5.0.98 allow remote attackers to execute arbitrary code via format string specifiers in "various string formatting functions," which trigger heap-based buffer overflows.    9.3  High  2017-01-07  2011-03-07  View
56080  CVE-2007-3944  Multiple heap-based buffer overflows in the Perl Compatible Regular Expressions (PCRE) library in the JavaScript engine in WebKit in Apple Safari 3 Beta before Update 3.0.3, and iPhone before 1.0.1, allow remote attackers to execute arbitrary code via certain JavaScript regular expressions. NOTE: this issue was originally reported only for MobileSafari on the iPhone. NOTE: it is not clear whether this stems from an issue in the original distribution of PCRE, which might already have a separate CVE identifier.    9.3  High  2017-01-07  2011-04-07  View
56336  CVE-2007-4205  XHA (Linux-HA) on the BlueCat Networks Adonis DNS/DHCP Appliance 5.0.2.8 allows remote attackers to cause a denial of service (heartbeat control process crash) via a UDP packet to port 694. NOTE: this may be the same as CVE-2006-3121.    7.1  High  2017-01-07  2011-03-07  View

Page 1149 of 17672, showing 5 records out of 88360 total, starting on record 5741, ending on 5745

Actions