NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 54590 | CVE-2007-2423 | Cross-site scripting (XSS) vulnerability in index.php in MoinMoin 1.5.7 allows remote attackers to inject arbitrary web script or HTML via the do parameter in an AttachFile action, a different vulnerability than CVE-2007-0857. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5.8 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 53823 | CVE-2007-1639 | Unrestricted file upload vulnerability in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allows remote authenticated users to upload and execute arbitrary PHP code via a file with an executable extension, which is then accessed by the (1) calendar or (2) file management module, or possibly unspecified other files. | 2 | 4.6 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 53825 | CVE-2007-1641 | SQL injection vulnerability in index.php in PortailPHP 2.0 allows remote attackers to execute arbitrary SQL commands via the idnews parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
| 53826 | CVE-2007-1642 | Unspecified vulnerability in ManageEngine Firewall Analyzer allows remote authenticated users to "access any common file" via a direct URL request. | 2 | 4 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 54340 | CVE-2007-2170 | The APPLSYS.FND_DM_NODES package in Oracle E-Business Suite does not check for valid sessions, which allows remote attackers to delete arbitrary nodes. NOTE: due to lack of details from Oracle, it is not clear whether this issue is related to other CVE identifiers such as CVE-2007-2126, CVE-2007-2127, or CVE-2007-2128. | 2 | 9.4 | High | 2017-01-07 | 2008-11-13 | View |
Page 15412 of 17672, showing 5 records out of 88360 total, starting on record 77056, ending on 77060