NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 53503 | CVE-2007-1305 | Multiple cross-site scripting (XSS) vulnerabilities in add2.php in Sava"s Guestbook 23.11.2006 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) country, (3) email, and (4) website parameters. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 53759 | CVE-2007-1575 | Multiple SQL injection vulnerabilities in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allow remote authenticated users to execute arbitrary SQL commands via (1) unspecified vectors to the (a) calendar and (2) search modules, and an (2) unspecified cookie when the user logs out. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
| 54015 | CVE-2007-1843 | PHP remote file inclusion vulnerability in gmapfactory/params.php in MapLab 2.2.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the gszAppPath parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-08-22 | View | |
| 54271 | CVE-2007-2101 | FAC Guestbook 3.01 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/gbdb.mdb. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 10 | High | 2017-01-07 | 2008-09-05 | View | |
| 54527 | CVE-2007-2360 | Symantec Norton Ghost, Norton Save & Recovery, LiveState Recovery, and BackupExec System Recovery before 20070426, when remote backups of restore point images are configured, encrypt network share credentials with a key formed by a hash of the username, which allows local users to obtain the credentials by calculating the key. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 15460 of 17672, showing 5 records out of 88360 total, starting on record 77296, ending on 77300