NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55780  CVE-2007-3630  changePW.php in AV Tutorial Script (avtutorial) 1.0 does not require authentication or knowledge of an old password for password changes, which allows remote attackers to change passwords for arbitrary users via a modified password parameter.    6.4  Medium  2017-01-07  2008-11-15  View
56036  CVE-2007-3896  The URL handling in Shell32.dll in the Windows shell in Microsoft Windows XP and Server 2003, with Internet Explorer 7 installed, allows remote attackers to execute arbitrary programs via invalid "%" sequences in a mailto: or other URI handler, as demonstrated using mIRC, Outlook, Firefox, Adobe Reader, Skype, and other applications. NOTE: this issue might be related to other issues involving URL handlers in Windows systems, such as CVE-2007-3845. There also might be separate but closely related issues in the applications that are invoked by the handlers.    9.3  High  2017-01-07  2011-03-07  View
56292  CVE-2007-4161  rvd in TIBCO Rendezvous (RV) 7.5.2, when -no-lead-wc is omitted, might allow remote attackers to cause a denial of service (network instability) via a subject name with a leading (1) "*" (asterisk) or (2) ">" (greater than) wildcard character.    4.3  Medium  2017-01-07  2011-03-07  View
56548  CVE-2007-4423  Stack-based buffer overflow in the AUTH_LIST_GROUPS_FOR_AUTHID function in IBM DB2 UDB 9.1 before Fixpak 3 allows attackers to cause a denial of service and possibly execute arbitrary code via a long argument.    Medium  2017-01-07  2011-04-06  View
56804  CVE-2007-4684  Integer overflow in the kernel in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a large num_sels argument to the i386_set_ldt system call.    6.9  Medium  2017-01-07  2011-10-11  View

Page 16031 of 17672, showing 5 records out of 88360 total, starting on record 80151, ending on 80155

Actions