NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52326  CVE-2007-0094  Sven Moderow GuestBook 0.3a stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for (1) gbook97.mdb or (2) gbook.mdb in ~db/.    7.5  High  2017-01-07  2008-11-15  View
52327  CVE-2007-0095  phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a direct request for themes/darkblue_orange/layout.inc.php, which reveals the path in an error message.    Medium  2017-01-07  2008-11-15  View
56935  CVE-2007-4824  Multiple cross-application scripting (XAS) vulnerabilities in Google Picasa have unspecified attack vectors and impact. NOTE: this information is based upon a vague pre-advisory.    6.8  Medium  2017-01-07  2008-11-15  View
57703  CVE-2007-5640  The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), Mobile Voice Client, and other product lines, allow remote attackers to block calls and force re-registration via a resume message to the Signaling Server that has a spoofed source IP address for the phone. NOTE: the attack is more disruptive if a new spoofed resume message is sent after each re-registration.    7.1  High  2017-01-07  2008-11-15  View
58215  CVE-2007-6212  Directory traversal vulnerability in region.php in KML share 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the layer parameter.    Medium  2017-01-07  2008-11-15  View

Page 15235 of 17672, showing 5 records out of 88360 total, starting on record 76171, ending on 76175

Actions