NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54987  CVE-2007-2824  SQL injection vulnerability in paypal.php in AlstraSoft E-Friends 4.21 and earlier allows remote attackers to execute arbitrary SQL commands via the pack parameter in a paypal action for index.php.    10  High  2017-01-07  2008-11-15  View
55243  CVE-2007-3089  Mozilla Firefox before 2.0.0.5 does not prevent use of document.write to replace an IFRAME (1) during the load stage or (2) in the case of an about:blank frame, which allows remote attackers to display arbitrary HTML or execute certain JavaScript code, as demonstrated by code that intercepts keystroke values from window.event, aka the "promiscuous IFRAME access bug," a related issue to CVE-2006-4568.    4.3  Medium  2017-01-07  2013-07-06  View
55499  CVE-2007-3347  The D-Link DPH-540/DPH-541 phone accepts SIP INVITE messages that are not from the Call Server"s IP address, which allows remote attackers to engage in arbitrary SIP communication with the phone, as demonstrated by communication with forged caller ID.    7.8  High  2017-01-07  2012-11-05  View
55755  CVE-2007-3605  Stack-based buffer overflow in the kweditcontrol.kwedit.1 ActiveX control in FrontEndSapGuikwedit.dll in the EnjoySAP SAP GUI allows remote attackers to execute arbitrary code via a long argument to the PrepareToPostHTML function.    7.6  High  2017-01-07  2011-03-07  View
56011  CVE-2007-3867  Multiple unspecified vulnerabilities in Oracle E-Business Suite 11.5.10CU2 have unknown impact and attack vectors, related to (1) APPS04, (2) APPS05, and (3) APPS06 in (a) Oracle Application Object Library, (4) APPS07 in Oracle Customer Intelligence, (5) APPS08 in Oracle Payments, (7) APPS10 in Oracle Human Resources, and (8) APPS11 in iRecruitment.    7.5  High  2017-01-07  2012-10-22  View

Page 14516 of 17672, showing 5 records out of 88360 total, starting on record 72576, ending on 72580

Actions