NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
56361 | CVE-2007-4232 | PHP remote file inclusion vulnerability in admin/inc/change_action.php in Andreas Robertz PHPNews 0.93 allows remote attackers to execute arbitrary PHP code via a URL in the format_menue parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
56617 | CVE-2007-4494 | The tipafriend function in eZ publish before 3.8.9, and 3.9 before 3.9.3, does not limit access by anonymous users, which allows remote attackers to conduct spam attacks. | 2 | 5 | Medium | 2017-01-07 | 2015-07-27 | View | |
56873 | CVE-2007-4756 | Directory traversal vulnerability in the FTP client in Total Commander before 7.02 allows remote FTP servers to create or overwrite arbitrary files via ".." (dot dot backslash) sequences in a filename. NOTE: the ".." are not displayed when the user lists files. NOTE: this can be leveraged for code execution by writing to a Startup folder. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
57129 | CVE-2007-5041 | G DATA InternetSecurity 2007 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the (1) NtCreateKey and (2) NtOpenProcess kernel SSDT hooks. | 2 | 4.6 | Medium | 2017-01-07 | 2008-11-15 | View | |
57385 | CVE-2007-5309 | PHP remote file inclusion vulnerability in admin.wmtgallery.php in the webmaster-tips.net Flash Image Gallery (com_wmtgallery) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 1518 of 17672, showing 5 records out of 88360 total, starting on record 7586, ending on 7590