NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 53736 | CVE-2007-1552 | Unrestricted file upload vulnerability in usercp.php in MetaForum 0.513 Beta restricts file types based on the MIME type in the Content-type HTTP header, which allows remote attackers to upload and execute arbitrary scripts via an image MIME type with a filename containing an executable extension such as .php. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
| 53992 | CVE-2007-1820 | Nortel Networks CallPilot and Meridian Mail voicemail systems, when a mailbox has auto logon enabled, allow remote attackers to retrieve or remove messages, or reconfigure the mailbox, by spoofing Calling Number Identification (CNID, aka Caller ID). | 2 | 9.3 | High | 2017-01-07 | 2008-11-13 | View | |
| 54248 | CVE-2007-2078 | ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in Maian Weblog 3.1 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: this issue was disputed by a third party researcher, since the path_to_folder variable is initialized before use. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 53737 | CVE-2007-1553 | admin/configuration.php in Guestbara 1.2 and earlier allows remote attackers to modify the e-mail, name, and password of the admin account by setting the zapis parameter to "ok" and providing modified admin_mail, login, and pass parameters. | 2 | 5 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 53993 | CVE-2007-1821 | Sprint Nextel Sprint voice mail systems allow remote attackers to retrieve or remove messages, or reconfigure mailboxes, by spoofing Calling Number Identification (CNID, aka Caller ID). | 2 | 10 | High | 2017-01-07 | 2008-11-13 | View |
Page 15446 of 17672, showing 5 records out of 88360 total, starting on record 77226, ending on 77230