NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54225 | CVE-2007-2055 | AFFLIB 2.2.8 and earlier allows attackers to execute arbitrary commands via shell metacharacters involving (1) certain command line parameters in tools/afconvert.cpp and (2) arguments to the get_parameter function in aimage/ident.cpp. NOTE: it is unknown if the get_parameter vector (2) is ever called. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
54737 | CVE-2007-2573 | PHP remote file inclusion vulnerability in plugin/HP_DEV/cms2.php in PHPtree 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the s_dir parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
55249 | CVE-2007-3095 | Unspecified vulnerability in Symantec Reporting Server 1.0.197.0, and other versions before 1.0.224.0, as used in Symantec Client Security 3.1 and later, and Symantec AntiVirus Corporate Edition (SAV CE) 10.1 and later, allows attackers to "disable the authentication system" and bypass authentication via unknown vectors. | 2 | 9 | High | 2017-01-07 | 2011-03-07 | View | |
55505 | CVE-2007-3353 | ** DISPUTED ** PHP remote file inclusion vulnerability in includes/template.php in MyEvent 1.6 allows remote attackers to execute arbitrary PHP code via a URL in the myevent_path parameter. NOTE: a reliable third party disputes this issue, saying "the entire file is a class." | 2 | 7.5 | High | 2017-01-07 | 2012-10-30 | View | |
55761 | CVE-2007-3611 | admin.php in VRNews 1.1.1, and possibly other 1.x versions, does not require authentication, which allows remote attackers to perform certain administrative actions via a direct request with a (1) edit, (2) add, (3) config, or (4) del value in the act parameter. | 2 | 9.3 | High | 2017-01-07 | 2008-11-15 | View |
Page 16058 of 17672, showing 5 records out of 88360 total, starting on record 80286, ending on 80290