NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65735  CVE-2006-7192  Microsoft ASP .NET Framework 2.0.50727.42 does not properly handle comment (/* */) enclosures, which allows remote attackers to bypass request filtering and conduct cross-site scripting (XSS) attacks, or cause a denial of service, as demonstrated via an xss:expression STYLE attribute in a closing XSS HTML tag.    4.3  Medium  2016-12-20  2008-11-13  View
54729  CVE-2007-2565  Cdelia Software ImageProcessing allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted BMP file.    7.1  High  2017-01-07  2008-11-13  View
55753  CVE-2007-3603  SQL injection vulnerability in the dashboard (include/utils/SearchUtils.php) in vtiger CRM before 5.0.3 allows remote authenticated users to execute arbitrary SQL commands via the assigned_user_id parameter in a Potentials ListView action to index.php.    6.5  Medium  2017-01-07  2008-11-13  View
55754  CVE-2007-3604  vtiger CRM before 5.0.3 allows remote authenticated users with access to the Analytics DashBoard menu to bypass data restrictions and read the pipeline of the entire organization, possibly involving modules/Potentials/Potentials.php.    Medium  2017-01-07  2008-11-13  View
53963  CVE-2007-1791  SQL injection vulnerability in wall.php in Picture-Engine 1.2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter.    7.5  High  2017-01-07  2008-11-13  View

Page 15438 of 17672, showing 5 records out of 88360 total, starting on record 77186, ending on 77190

Actions