NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52404  CVE-2007-0173  Directory traversal vulnerability in index.php in L2J Statistik Script 0.09 and earlier, when register_globals is enabled and magic_quotes is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by index.php.    6.8  Medium  2017-01-07  2011-03-07  View
52660  CVE-2007-0433  Unspecified vulnerability in BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2, when using Active Directory LDAP for authentication, allows remote authenticated users to access the server even after the account has been disabled.    6.5  Medium  2017-01-07  2008-11-13  View
52916  CVE-2007-0694  Cross-site scripting (XSS) vulnerability in footer.php in DGNews 2.1 allows remote attackers to inject arbitrary web script or HTML via the copyright parameter.    4.3  Medium  2017-01-07  2011-03-07  View
53684  CVE-2007-1500  The Linux Security Auditing Tool (LSAT) allows local users to overwrite arbitrary files via a symlink attack on temporary files, as demonstrated using /tmp/lsat1.lsat.    4.3  Medium  2017-01-07  2008-11-13  View
53940  CVE-2007-1768  Cross-site scripting (XSS) vulnerability in app/helpers/application_helper.rb in Mephisto 0.7.3 and Mephisto Edge 20070325 allows remote attackers to inject arbitrary web script or HTML via the author name field in a comment.    4.3  Medium  2017-01-07  2008-11-13  View

Page 15012 of 17672, showing 5 records out of 88360 total, starting on record 75056, ending on 75060

Actions