NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 52821 | CVE-2007-0599 | Variable overwrite vulnerability in common/config.php in Aztek Forum 4.00 allows remote attackers to overwrite arbitrary program variables and conduct other unauthorized activities, such as copying arbitrary files using index/common_actions.php, via vectors associated with extract operations on the (1) POST, (2) GET, (3) COOKIE, and (4) SERVER superglobal arrays. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
| 53077 | CVE-2007-0861 | ** DISPUTED ** PHP remote file inclusion vulnerability in modules/mail/index.php in phpCOIN RC-1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _CCFG["_PKG_PATH_MDLS"] parameter. NOTE: this issue has been disputed by a reliable third party, who states that a fatal error occurs before the relevant code is reached. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
| 54357 | CVE-2007-2187 | Stack-based buffer overflow in eXtremail 2.1.1 and earlier allows remote attackers to execute arbitrary code via a long DNS response. NOTE: this might be related to CVE-2006-6926. | 2 | 10 | High | 2017-01-07 | 2008-11-13 | View | |
| 54358 | CVE-2007-2188 | eXtremail 2.1.1 and earlier does not verify the ID field (aka transaction id) in DNS responses, which makes it easier for remote attackers to conduct DNS spoofing. | 2 | 10 | High | 2017-01-07 | 2008-11-13 | View | |
| 52823 | CVE-2007-0601 | common/safety.php in Aztek Forum 4.00 allows remote attackers to enter certain data containing %22 sequences (URL encoded double quotes) and other potentially dangerous manipulations by sending a cookie, which bypasses the blacklist matching against the GET and PUT superglobal arrays. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View |
Page 15418 of 17672, showing 5 records out of 88360 total, starting on record 77086, ending on 77090