NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 52374 | CVE-2007-0142 | SQL injection vulnerability in orange.asp in ShopStoreNow E-commerce Shopping Cart allows remote attackers to execute arbitrary SQL commands via the CatID parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 52630 | CVE-2007-0403 | SQL injection vulnerability in admin/memberlist.php in Easebay Resources Paypal Subscription Manager allows remote attackers to execute arbitrary SQL commands via the keyword parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
| 53142 | CVE-2007-0927 | Heap-based buffer overflow in uTorrent 1.6 allows remote attackers to execute arbitrary code via a torrent file with a crafted announce header. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 54422 | CVE-2007-2255 | Multiple PHP remote file inclusion vulnerabilities in Download-Engine 1.4.3 allow remote attackers to execute arbitrary PHP code via a URL in the (1) eng_dir parameter to addmember.php, (2) lang_path parameter to admin/enginelib/class.phpmailer.php, and the (3) spaw_root parameter to admin/includes/spaw/dialogs/colorpicker.php, different vectors than CVE-2006-5291 and CVE-2006-5459. NOTE: vector 3 might be an issue in SPAW. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
| 55446 | CVE-2007-3294 | Multiple buffer overflows in libtidy, as used in the Tidy extension for PHP 5.2.3 and possibly other products, allow context-dependent attackers to execute arbitrary code via (1) a long second argument to the tidy_parse_string function or (2) an unspecified vector to the tidy_repair_string function. NOTE: this might only be an issue in environments where vsnprintf is implemented as a wrapper for vsprintf. | 2 | 7.5 | High | 2017-01-07 | 2012-10-30 | View |
Page 14514 of 17672, showing 5 records out of 88360 total, starting on record 72566, ending on 72570