NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56993 | CVE-2007-4903 | Multiple buffer overflows in a certain ActiveX control in CryptoX.dll 2.0 and earlier in the Ultra Crypto Component allow remote attackers to execute arbitrary code via (1) a long string in the first argument to the AcquireContext method or (2) an unspecified vector to the DeleteContext method. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 57249 | CVE-2007-5166 | Multiple PHP remote file inclusion vulnerabilities in SiteSys 1.0a allow remote attackers to execute arbitrary PHP code via a URL in the doc_root parameter to (1) inc/pagehead.inc.php or (2) inc/pageinit.inc.php. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57505 | CVE-2007-5440 | ** DISPUTED ** Multiple PHP remote file inclusion vulnerabilities in CRS Manager allow remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter to (1) index.php or (2) login.php. NOTE: this issue is disputed by CVE, since DOCUMENT_ROOT cannot be modified by an attacker. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 58017 | CVE-2007-5993 | Cross-site scripting (XSS) vulnerability in Visionary Technology in Library Solutions (VTLS) vtls.web.gateway before 48.1.1 allows remote attackers to inject arbitrary web script or HTML via the searchtype parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 64929 | CVE-2006-6383 | PHP 5.2.0 and 4.4 allows local users to bypass safe_mode and open_basedir restrictions via a malicious path and a null byte before a ";" in a session_save_path argument, followed by an allowed path, which causes a parsing inconsistency in which PHP validates the allowed path but sets session.save_path to the malicious path. | 2 | 4.6 | Medium | 2016-12-20 | 2008-11-15 | View |
Page 15300 of 17672, showing 5 records out of 88360 total, starting on record 76496, ending on 76500