NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52821  CVE-2007-0599  Variable overwrite vulnerability in common/config.php in Aztek Forum 4.00 allows remote attackers to overwrite arbitrary program variables and conduct other unauthorized activities, such as copying arbitrary files using index/common_actions.php, via vectors associated with extract operations on the (1) POST, (2) GET, (3) COOKIE, and (4) SERVER superglobal arrays.    7.5  High  2017-01-07  2008-11-13  View
53077  CVE-2007-0861  ** DISPUTED ** PHP remote file inclusion vulnerability in modules/mail/index.php in phpCOIN RC-1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _CCFG["_PKG_PATH_MDLS"] parameter. NOTE: this issue has been disputed by a reliable third party, who states that a fatal error occurs before the relevant code is reached.    7.5  High  2017-01-07  2008-11-13  View
54357  CVE-2007-2187  Stack-based buffer overflow in eXtremail 2.1.1 and earlier allows remote attackers to execute arbitrary code via a long DNS response. NOTE: this might be related to CVE-2006-6926.    10  High  2017-01-07  2008-11-13  View
54358  CVE-2007-2188  eXtremail 2.1.1 and earlier does not verify the ID field (aka transaction id) in DNS responses, which makes it easier for remote attackers to conduct DNS spoofing.    10  High  2017-01-07  2008-11-13  View
52823  CVE-2007-0601  common/safety.php in Aztek Forum 4.00 allows remote attackers to enter certain data containing %22 sequences (URL encoded double quotes) and other potentially dangerous manipulations by sending a cookie, which bypasses the blacklist matching against the GET and PUT superglobal arrays.    7.5  High  2017-01-07  2008-11-13  View

Page 15418 of 17672, showing 5 records out of 88360 total, starting on record 77086, ending on 77090

Actions