NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58011  CVE-2007-5987  details.php in BtiTracker before 1.4.5, when torrent viewing is disabled for guests, allows remote attackers to bypass protection mechanisms via a direct request, as demonstrated by (1) reading the details of an arbitrary torrent and (2) modifying a torrent owned by a guest.    6.8  Medium  2017-01-07  2008-11-15  View
58267  CVE-2007-6271  Absolute News Manager.NET 5.1 allows remote attackers to obtain sensitive information via a direct request to getpath.aspx, which reveals the installation path in an error message.    Medium  2017-01-07  2008-11-15  View
53404  CVE-2007-1197  Multiple unspecified vulnerabilities in Epiware before 4.7.5 have unknown impact and attack vectors, possibly related to cross-site scripting (XSS) and other unspecified issues.    9.3  High  2017-01-07  2008-11-15  View
54940  CVE-2007-2776  AlstraSoft Template Seller Pro 3.25 and earlier sends a redirect to the web browser but does not exit when administrative credentials are missing, which allows remote attackers to inject a credential variable setting and obtain administrative access via a direct request to admin/changeinfo.php.    10  High  2017-01-07  2008-11-15  View
56220  CVE-2007-4089  Vikingboard 0.1.2 allows remote attackers to obtain sensitive information via the debug parameter to (1) forum.php, (2) cp.php, and possibly other unspecified components.    4.3  Medium  2017-01-07  2008-11-15  View

Page 15293 of 17672, showing 5 records out of 88360 total, starting on record 76461, ending on 76465

Actions