NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 52653 | CVE-2007-0426 | BEA WebLogic Portal 9.2, when running in a WebLogic Server clustered environment using WebLogic Portal entitlements, does not properly propagate entitlement policy changes if the changes are made on a managed server while the Administrative Server is unavailable, which might allow attackers to bypass intended restrictions. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 52909 | CVE-2007-0687 | SQL injection vulnerability in i-search.php in Michelle"s L2J Dropcalc 4 and earlier allows remote authenticated users to execute arbitrary SQL commands via the itemid parameter. | 2 | 6.5 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 53165 | CVE-2007-0953 | Cross-site scripting (XSS) vulnerability in search.pl in @Mail 4.61 and earlier allows remote attackers to inject arbitrary web script or HTML via the keywords parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 53421 | CVE-2007-1218 | Off-by-one buffer overflow in the parse_elements function in the 802.11 printer code (print-802_11.c) for tcpdump 3.9.5 and earlier allows remote attackers to cause a denial of service (crash) via a crafted 802.11 frame. NOTE: this was originally referred to as heap-based, but it might be stack-based. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 54701 | CVE-2007-2537 | Multiple SQL injection vulnerabilities in mainfile.php in NPDS 5.10 and earlier allow remote authenticated users to execute arbitrary SQL commands via a (1) nickname or (2) Id in a cookie, or (3) the X-Forwarded-For (X_FORWARDED_FOR) HTTP header. | 2 | 6.5 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 14760 of 17672, showing 5 records out of 88360 total, starting on record 73796, ending on 73800