NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56442 | CVE-2007-4317 | Multiple cross-site request forgery (CSRF) vulnerabilities in the management interface in ZyNOS firmware 3.62(WK.6) on the Zyxel Zywall 2 device allow remote attackers to perform certain actions as administrators, as demonstrated by a request to Forms/General_1 with the (1) sysSystemName and (2) sysDomainName parameters. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56954 | CVE-2007-4843 | Directory traversal vulnerability in X-Diesel Unreal Commander 0.92 build 565 and 573 allows remote FTP servers to create or overwrite arbitrary files via a .. (dot dot) in a filename. NOTE: this can be leveraged for code execution by writing to a Startup folder. | 2 | 5.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58490 | CVE-2007-6495 | inc_newuser.asp in Hosting Controller 6.1 Hot fix 3.3 and earlier allows remote authenticated users to change the permissions of directories named (1) db, (2) www, (3) Special, and (4) log at arbitrary locations under the web root via a modified Dirroot parameter in an AddUser action to accounts/AccountActions.asp. NOTE: this can be leveraged for remote code execution by changing the permissions of Forumdb, which is configured for execution of ASP scripts with administrative privileges, and then uploading a script to Forumdb. | 2 | 6.5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 52347 | CVE-2007-0115 | Static code injection vulnerability in Coppermine Photo Gallery 1.4.10 and earlier allows remote authenticated administrators to execute arbitrary PHP code via the Username to login.php, which is injected into an error message in security.log.php, which can then be accessed using viewlog.php. | 2 | 6 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 55419 | CVE-2007-3266 | Directory traversal vulnerability in webif.cgi in ifnet WEBIF allows remote attackers to include and execute arbitrary local files a .. (dot dot) in the outconfig parameter. | 2 | 9 | High | 2017-01-07 | 2008-11-15 | View |
Page 15253 of 17672, showing 5 records out of 88360 total, starting on record 76261, ending on 76265