NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53477 | CVE-2007-1277 | WordPress 2.1.1, as downloaded from some official distribution sites during February and March 2007, contains an externally introduced backdoor that allows remote attackers to execute arbitrary commands via (1) an eval injection vulnerability in the ix parameter to wp-includes/feed.php, and (2) an untrusted passthru call in the iz parameter to wp-includes/theme.php. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
53733 | CVE-2007-1549 | Unrestricted file upload vulnerability in gallery.php in phpx 3.5.15 allows remote attackers to upload and execute arbitrary PHP scripts via an addImage action, which places scripts into the gallery/shelties/ directory. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
53989 | CVE-2007-1817 | SQL injection vulnerability in index.php in the Lykos Reviews (lykos_reviews) 1.00 module for Xoops allows remote attackers to execute arbitrary SQL commands via the uid parameter in a u action. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
54245 | CVE-2007-2075 | ScramDisk 4 Linux before 1.0-1 does not perform permission checks on mount points, which allows local users to gain privileges by using a system directory as a mount point for a container. | 2 | 6.9 | Medium | 2017-01-07 | 2011-03-07 | View | |
54501 | CVE-2007-2334 | Nortel VPN Router (aka Contivity) 1000, 2000, 4000, and 5000 before 5_05.149, 5_05.3xx before 5_05.304, and 6.x before 6_05.140 has two template HTML files lacking certain verification tags, which allows remote attackers to access the administration interface and change the device configuration via certain requests. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View |
Page 16089 of 17672, showing 5 records out of 88360 total, starting on record 80441, ending on 80445