NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 57848 | CVE-2007-5797 | SQLLoginModule in Apache Geronimo 2.0 through 2.1 does not throw an exception for a nonexistent username, which allows remote attackers to bypass authentication via a login attempt with any username not contained in the database. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 58104 | CVE-2007-6095 | The SIP component in Ingate Firewall before 4.6.0 and SIParator before 4.6.0, when Remote NAT Traversal is employed, does not properly perform user registration and message distribution, which might allow remote authenticated users to receive messages intended for other users. | 2 | 4 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58360 | CVE-2007-6365 | Cross-site scripting (XSS) vulnerability in modules/ecal/display.php in the Event Calendar in bcoos 1.0.10 allows remote attackers to inject arbitrary web script or HTML via the month parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: the day and year vectors are covered by CVE-2007-6274. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 58616 | CVE-2007-6621 | Directory traversal vulnerability in joovili.images.php in Joovili 3.0.0 through 3.0.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the picture parameter. | 2 | 6.4 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58872 | CVE-2006-0132 | Directory traversal vulnerability in webftp.php in SysCP WebFTP 1.2.6 and possibly earlier allows remote attackers to include and execute arbitrary local PHP scripts, and possibly read other types of files, via a .. (dot dot) and a trailing null in the webftp_language parameter. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 15042 of 17672, showing 5 records out of 88360 total, starting on record 75206, ending on 75210