NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58081 | CVE-2007-6060 | AhnLab Antivirus 3 Internet Security 2008 Platinum appends data to a filename string at a location indicated by the "Filename length" field in a ZIP header, which allows remote attackers to cause a denial of service (machine crash) and possibly execute arbitrary code via a ZIP file in which this field"s value is larger than the actual number of bytes in the filename. | 2 | 9.3 | High | 2017-01-07 | 2011-03-07 | View | |
58337 | CVE-2007-6342 | SQL injection vulnerability in the David Castro AuthCAS module (AuthCAS.pm) 0.4 for the Apache HTTP Server allows remote attackers to execute arbitrary SQL commands via the SESSION_COOKIE_NAME (session ID) in a cookie. | 2 | 7.5 | High | 2017-01-07 | 2009-04-01 | View | |
58593 | CVE-2007-6598 | Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
58849 | CVE-2006-0109 | Cross-site scripting vulnerability in category.php in Modular Merchant Shopping Cart allows remote attackers to inject arbitrary web script or HTML via the cat parameter. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
59105 | CVE-2006-0366 | Cross-site scripting (XSS) vulnerability in Phpclanwebsite (aka PCW) allows remote attackers to inject arbitrary web script or HTML via a javascript URI in a BBCode img tag. | 2 | 4.3 | Medium | 2016-12-20 | 2016-11-18 | View |
Page 15851 of 17672, showing 5 records out of 88360 total, starting on record 79251, ending on 79255