NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52653  CVE-2007-0426  BEA WebLogic Portal 9.2, when running in a WebLogic Server clustered environment using WebLogic Portal entitlements, does not properly propagate entitlement policy changes if the changes are made on a managed server while the Administrative Server is unavailable, which might allow attackers to bypass intended restrictions.    6.8  Medium  2017-01-07  2011-03-07  View
52909  CVE-2007-0687  SQL injection vulnerability in i-search.php in Michelle"s L2J Dropcalc 4 and earlier allows remote authenticated users to execute arbitrary SQL commands via the itemid parameter.    6.5  Medium  2017-01-07  2011-03-07  View
53165  CVE-2007-0953  Cross-site scripting (XSS) vulnerability in search.pl in @Mail 4.61 and earlier allows remote attackers to inject arbitrary web script or HTML via the keywords parameter.    4.3  Medium  2017-01-07  2011-03-07  View
53421  CVE-2007-1218  Off-by-one buffer overflow in the parse_elements function in the 802.11 printer code (print-802_11.c) for tcpdump 3.9.5 and earlier allows remote attackers to cause a denial of service (crash) via a crafted 802.11 frame. NOTE: this was originally referred to as heap-based, but it might be stack-based.    6.8  Medium  2017-01-07  2011-03-07  View
54701  CVE-2007-2537  Multiple SQL injection vulnerabilities in mainfile.php in NPDS 5.10 and earlier allow remote authenticated users to execute arbitrary SQL commands via a (1) nickname or (2) Id in a cookie, or (3) the X-Forwarded-For (X_FORWARDED_FOR) HTTP header.    6.5  Medium  2017-01-07  2008-11-15  View

Page 14760 of 17672, showing 5 records out of 88360 total, starting on record 73796, ending on 73800

Actions