NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
53503  CVE-2007-1305  Multiple cross-site scripting (XSS) vulnerabilities in add2.php in Sava"s Guestbook 23.11.2006 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) country, (3) email, and (4) website parameters.    6.8  Medium  2017-01-07  2008-09-05  View
53759  CVE-2007-1575  Multiple SQL injection vulnerabilities in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allow remote authenticated users to execute arbitrary SQL commands via (1) unspecified vectors to the (a) calendar and (2) search modules, and an (2) unspecified cookie when the user logs out.    7.5  High  2017-01-07  2008-09-05  View
54015  CVE-2007-1843  PHP remote file inclusion vulnerability in gmapfactory/params.php in MapLab 2.2.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the gszAppPath parameter.    6.8  Medium  2017-01-07  2011-08-22  View
54271  CVE-2007-2101  FAC Guestbook 3.01 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/gbdb.mdb. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    10  High  2017-01-07  2008-09-05  View
54527  CVE-2007-2360  Symantec Norton Ghost, Norton Save & Recovery, LiveState Recovery, and BackupExec System Recovery before 20070426, when remote backups of restore point images are configured, encrypt network share credentials with a key formed by a hash of the username, which allows local users to obtain the credentials by calculating the key.    6.8  Medium  2017-01-07  2011-03-07  View

Page 15460 of 17672, showing 5 records out of 88360 total, starting on record 77296, ending on 77300

Actions