NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
57644  CVE-2007-5579  login.php in Pligg CMS 9.5 uses a guessable confirmation code when resetting a forgotten password, which allows remote attackers with knowledge of a username to reset that user"s password by calculating the confirmationcode parameter.    7.5  High  2017-01-07  2008-11-15  View
52781  CVE-2007-0557  rMake before 1.0.4 drops root privileges in a way that retains the original supplemental groups, which might allow attackers to gain privileges via a crafted recipe file, a different vulnerability than CVE-2007-0536.    7.2  High  2017-01-07  2008-11-15  View
53037  CVE-2007-0820  Multiple PHP remote file inclusion vulnerabilities in Cedric CLAIRE PortailPhp 2 allow remote attackers to execute arbitrary PHP code via a URL in the chemin parameter to (1) mod_news/index.php, (2) mod_news/goodies.php, or (3) mod_search/index.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-07  2008-11-15  View
53293  CVE-2007-1085  Cross-site scripting (XSS) vulnerability in Google Desktop allows remote attackers to bypass protection schemes and inject arbitrary web script or HTML, and possibly gain full access to the system, by using an XSS vulnerability in google.com to extract the signature for the internal web server, then calling the "under" parameter in Advanced Search with the proper signature.    7.6  High  2017-01-07  2008-11-15  View
54829  CVE-2007-2665  PHP remote file inclusion vulnerability in block.php in PhpFirstPost 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the Include parameter.    7.5  High  2017-01-07  2008-11-15  View

Page 15178 of 17672, showing 5 records out of 88360 total, starting on record 75886, ending on 75890

Actions