NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53529 | CVE-2007-1343 | includes/functions.php in Craig Knudsen WebCalendar before 1.0.5 does not protect the noSet variable from external modification, which allows remote attackers to set arbitrary global variables via a URL with modified values in the noSet parameter, which leads to resultant vulnerabilities that probably include remote file inclusion and other issues. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
53785 | CVE-2007-1601 | ** DISPUTED ** Directory traversal vulnerability in check_vote.php in Weekly Drawing Contest 0.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the order parameter. NOTE: another researcher disputes this vulnerability, noting that the order variable is not used in any context that allows opening files. | 2 | 5 | Medium | 2017-01-07 | 2008-11-13 | View | |
54041 | CVE-2007-1870 | lighttpd before 1.4.14 allows attackers to cause a denial of service (crash) via a request to a file whose mtime is 0, which results in a NULL pointer dereference. | 2 | 7.8 | High | 2017-01-07 | 2011-03-07 | View | |
54297 | CVE-2007-2127 | Multiple unspecified vulnerabilities in Oracle E-Business Suite 12.0.0 have unknown impact and remote attack vectors via (1) Application Object Library (APPS04), iStore (2) APPS05 and (3) APPS06, (4) iSupport (APPS07), (5) Trade Management (APPS09), (6) Applications Manager (APPS10), and (7) Oracle Report Manager (APPS03). | 2 | 10 | High | 2017-01-07 | 2012-10-22 | View | |
54553 | CVE-2007-2386 | Buffer overflow in mDNSResponder in Apple Mac OS X 10.4 up to 10.4.9 allows remote attackers to cause a denial of service (application termination) or execute arbitrary code via a crafted UPnP Internet Gateway Device (IGD) packet. | 2 | 9.4 | High | 2017-01-07 | 2011-03-07 | View |
Page 1551 of 17672, showing 5 records out of 88360 total, starting on record 7751, ending on 7755