NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56527  CVE-2007-4402  Multiple unspecified scripts in mIRC allow user-assisted remote attackers to execute arbitrary code via the "|" (pipe) shell metacharacter in the name of the song in a .mp3 file.    6.8  Medium  2017-01-07  2008-09-05  View
56783  CVE-2007-4663  Directory traversal vulnerability in PHP before 5.2.4 allows attackers to bypass open_basedir restrictions via unspecified vectors involving the glob function.    7.5  High  2017-01-07  2011-03-07  View
57039  CVE-2007-4949  ** DISPUTED ** Multiple PHP remote file inclusion vulnerabilities in php(Reactor) 1.2.7pl1 allow remote attackers to execute arbitrary PHP code via a URL in the pathtohomedir parameter to (1) ekilat.com-int.tpl.php, (2) phpreactor.org-top.tpl.php, or (3) ekilat.com-top.tpl.php in examples/. NOTE: this issue has been disputed by CVE, since the vulnerability is present only when the product is incorrectly installed by placing examples/ under the web root.    6.8  Medium  2017-01-07  2008-11-15  View
57295  CVE-2007-5219  Directory traversal vulnerability in the CLAVSetting.CLSetting.1 ActiveX control in CLAVSetting.DLL 1.00.1829 in the CLAVSetting module in CyberLink PowerDVD 7.0 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the argument to the CreateNewFile method.    6.4  Medium  2017-01-07  2011-03-07  View
57551  CVE-2007-5486  dotProject before 2.1 does not properly check privileges when invoking the Companies module, which allows remote attackers to access this module via a crafted URL. NOTE: some of these details are obtained from third party information.    6.4  Medium  2017-01-07  2008-09-05  View

Page 14757 of 17672, showing 5 records out of 88360 total, starting on record 73781, ending on 73785

Actions