NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 52326 | CVE-2007-0094 | Sven Moderow GuestBook 0.3a stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for (1) gbook97.mdb or (2) gbook.mdb in ~db/. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 52327 | CVE-2007-0095 | phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a direct request for themes/darkblue_orange/layout.inc.php, which reveals the path in an error message. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56935 | CVE-2007-4824 | Multiple cross-application scripting (XAS) vulnerabilities in Google Picasa have unspecified attack vectors and impact. NOTE: this information is based upon a vague pre-advisory. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57703 | CVE-2007-5640 | The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), Mobile Voice Client, and other product lines, allow remote attackers to block calls and force re-registration via a resume message to the Signaling Server that has a spoofed source IP address for the phone. NOTE: the attack is more disruptive if a new spoofed resume message is sent after each re-registration. | 2 | 7.1 | High | 2017-01-07 | 2008-11-15 | View | |
| 58215 | CVE-2007-6212 | Directory traversal vulnerability in region.php in KML share 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the layer parameter. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 15235 of 17672, showing 5 records out of 88360 total, starting on record 76171, ending on 76175