NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 57819 | CVE-2007-5768 | The Globe7 soft phone client 7.3 sends username and password information in cleartext, which allows remote attackers to obtain sensitive information by sniffing the HTTP traffic. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58075 | CVE-2007-6054 | Cross-site scripting (XSS) vulnerability in the login page in the management interface in the Aruba 800 Mobility Controller 2.5.4.18 and earlier, and 2.4.8.6-FIPS and earlier, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the /screens URI, related to the url variable. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58331 | CVE-2007-6336 | Off-by-one error in ClamAV before 0.92 allows remote attackers to execute arbitrary code via a crafted MS-ZIP compressed CAB file. | 2 | 6.8 | Medium | 2017-01-07 | 2011-08-30 | View | |
| 58587 | CVE-2007-6592 | Apple Safari 2, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regards the certificate as also accepted for all domain names in subjectAltName:dNSName fields, which makes it easier for remote attackers to trick a user into accepting an invalid certificate for a spoofed web site. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 58843 | CVE-2006-0103 | TinyPHPForum 3.6 and earlier stores the (1) users/[USERNAME].hash and (2) users/[USERNAME].email files under the web root with insufficient access control, which allows remote attackers to list all registered users and possibly obtain other sensitive information. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 15218 of 17672, showing 5 records out of 88360 total, starting on record 76086, ending on 76090