NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 58011 | CVE-2007-5987 | details.php in BtiTracker before 1.4.5, when torrent viewing is disabled for guests, allows remote attackers to bypass protection mechanisms via a direct request, as demonstrated by (1) reading the details of an arbitrary torrent and (2) modifying a torrent owned by a guest. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58267 | CVE-2007-6271 | Absolute News Manager.NET 5.1 allows remote attackers to obtain sensitive information via a direct request to getpath.aspx, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 53404 | CVE-2007-1197 | Multiple unspecified vulnerabilities in Epiware before 4.7.5 have unknown impact and attack vectors, possibly related to cross-site scripting (XSS) and other unspecified issues. | 2 | 9.3 | High | 2017-01-07 | 2008-11-15 | View | |
| 54940 | CVE-2007-2776 | AlstraSoft Template Seller Pro 3.25 and earlier sends a redirect to the web browser but does not exit when administrative credentials are missing, which allows remote attackers to inject a credential variable setting and obtain administrative access via a direct request to admin/changeinfo.php. | 2 | 10 | High | 2017-01-07 | 2008-11-15 | View | |
| 56220 | CVE-2007-4089 | Vikingboard 0.1.2 allows remote attackers to obtain sensitive information via the debug parameter to (1) forum.php, (2) cp.php, and possibly other unspecified components. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 15293 of 17672, showing 5 records out of 88360 total, starting on record 76461, ending on 76465