NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56744 | CVE-2007-4624 | Cross-site scripting (XSS) vulnerability in pframe.php in AbleDesign Dynamic Picture Frame 1.00 allows remote attackers to inject arbitrary web script or HTML via the img_url parameter. NOTE: some of these details are obtained from third party information. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 57256 | CVE-2007-5173 | PHP remote file inclusion vulnerability in includes/openid/Auth/OpenID/BBStore.php in phpBB Openid 0.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the openid_root_path parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 57512 | CVE-2007-5447 | ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_functions restrictions, which allows context-dependent attackers to bypass intended limitations, as demonstrated by reading arbitrary files via the ioncube_read_file function. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57768 | CVE-2007-5711 | Massive Entertainment World in Conflict 1.001 and earlier allows remote attackers to cause a denial of service (failed assertion and daemon crash) via a large packet to TCP or UDP port 48000. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 58024 | CVE-2007-6000 | KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 14588 of 17672, showing 5 records out of 88360 total, starting on record 72936, ending on 72940