NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53218 | CVE-2007-1010 | Multiple PHP remote file inclusion vulnerabilities in ZebraFeeds 1.0, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the zf_path parameter to (1) aggregator.php and (2) controller.php in newsfeeds/includes/. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
53474 | CVE-2007-1271 | Buffer overflow in VMware ESX Server 3.0.0 and 3.0.1 might allow attackers to gain privileges or cause a denial of service (application crash) via unspecified vectors. | 2 | 6.6 | Medium | 2017-01-07 | 2011-03-07 | View | |
53730 | CVE-2007-1546 | Array index error in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (crash) via (1) large num_action values in the ProcAuSetElements function in server/dia/audispatch.c or (2) a large inputNum parameter to the compileInputs function in server/dia/auutil.c. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
53986 | CVE-2007-1814 | SQL injection vulnerability in viewcat.php in the Core module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2007-0377. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
54242 | CVE-2007-2072 | ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in Ivan Gallery Script 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the dir parameter. NOTE: this issue has been disputed by third party researchers for 0.3, stating that the dir variable is properly initialized before use. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View |
Page 15692 of 17672, showing 5 records out of 88360 total, starting on record 78456, ending on 78460