NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
52200 | CVE-2009-5099 | Cross-site scripting (XSS) vulnerability in ViewAction in Pentaho BI Server 1.7.0.1062 and earlier allows remote attackers to inject arbitrary web script or HTML via the outputType parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-14 | View | |
52456 | CVE-2007-0227 | slocate 3.1 does not properly manage database entries that specify names of files in protected directories, which allows local users to obtain the names of private files. NOTE: another researcher reports that the issue is not present in slocate 2.7. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
52712 | CVE-2007-0488 | The Huawei Versatile Routing Platform 1.43 2500E-003 firmware on the Quidway R1600 Router, and possibly other models, allows remote attackers to cause a denial of service (device crash) via a long show arp command. | 2 | 5 | Medium | 2017-01-07 | 2008-11-13 | View | |
52968 | CVE-2007-0747 | load_webdav in Apple Mac OS X 10.3.9 through 10.4.9 does not properly clean the environment when mounting a WebDAV filesystem, which allows local users to gain privileges by setting unspecified environment variables. | 2 | 7.2 | High | 2017-01-07 | 2013-07-03 | View | |
53224 | CVE-2007-1016 | SQL injection vulnerability in Aktueldownload Haber script allows remote attackers to execute arbitrary SQL commands via certain vectors related to the HaberDetay.asp and rss.asp components, and the id and kid parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: the combination of the HaberDetay.asp component and the id parameter is already covered by another February 2007 CVE candidate. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View |
Page 15748 of 17672, showing 5 records out of 88360 total, starting on record 78736, ending on 78740