NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57896 | CVE-2007-5845 | Directory traversal vulnerability in error.php in GuppY 4.6.3, 4.5.16, and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the id parameter. NOTE: this can be leveraged to bypass authentication and upload arbitrary files by including admin/inc/upload.inc and specifying certain multipart/form-data input for admin/inc/upload.inc. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
58408 | CVE-2007-6413 | Sun Solaris 10 with the 120011-04 and 120012-04 patches, and later 120011-* and 120012-* patches, allows remote attackers to bypass certain netgroup restrictions and obtain root access to a filesystem via NFS requests from a client root user. | 2 | 9.3 | High | 2017-01-07 | 2011-03-07 | View | |
60200 | CVE-2006-1491 | Eval injection vulnerability in Horde Application Framework versions 3.0 before 3.0.10 and 3.1 before 3.1.1 allows remote attackers to execute arbitrary code via the help viewer. | 2 | 7.5 | High | 2016-12-20 | 2011-05-13 | View | |
60456 | CVE-2006-1751 | Multiple SQL injection vulnerabilities in MvBlog before 1.6 allow remote attackers to execute arbitrary SQL commands via unknown vectors. | 2 | 7.5 | High | 2016-12-20 | 2011-09-08 | View | |
60712 | CVE-2006-2007 | Heap-based buffer overflow in Winny 2.0 b7.1 and earlier allows remote attackers to execute arbitrary code via long strings to certain commands sent to the file transfer port. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 1430 of 17672, showing 5 records out of 88360 total, starting on record 7146, ending on 7150