NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56967 | CVE-2007-4873 | SimpNews 2.41.03 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download arbitrary .inc files via a direct request, as demonstrated by admin/includes/dbtables.inc. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57479 | CVE-2007-5414 | Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0, when UTF-7 document content is rendered directly in UTF-7, allows remote attackers to inject arbitrary web script or HTML via a gopher URI that uses single quote characters to delimit a literal string within an XSS sequence, a related issue to CVE-2007-5415. | 2 | 2.6 | Low | 2017-01-07 | 2008-11-15 | View | |
| 58503 | CVE-2007-6508 | Directory traversal vulnerability in view.php in xeCMS 1.0 allows remote attackers to read arbitrary files via a ..%2F (dot dot slash) in the list parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 3720 | CVE-2008-3858 | The Downlevel DB2RA Support component in IBM DB2 9.1 before Fixpak 4a allows remote attackers to cause a denial of service (instance crash) via a crafted CONNECT data stream that simulates a V7 client connect request. | 2 | 4.3 | Medium | 2017-01-03 | 2008-11-15 | View | |
| 53128 | CVE-2007-0913 | Unspecified vulnerability in Microsoft Powerpoint allows remote user-assisted attackers to execute arbitrary code via unknown attack vectors, as exploited by Trojan.PPDropper.G. NOTE: as of 20070213, it is not clear whether this is the same issue as CVE-2006-5296, CVE-2006-4694, CVE-2006-3876, CVE-2006-3877, or older issues. | 2 | 9.3 | High | 2017-01-07 | 2008-11-15 | View |
Page 15266 of 17672, showing 5 records out of 88360 total, starting on record 76326, ending on 76330