NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57619 | CVE-2007-5554 | Oracle allows remote attackers to obtain server memory contents via crafted packets, aka Oracle reference number 7892711. NOTE: as of 20071016, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes. | 2 | 7.1 | High | 2017-01-07 | 2008-09-05 | View | |
58131 | CVE-2007-6124 | Cross-site scripting (XSS) vulnerability in signin.php in Softbiz Freelancers Script 1 allows remote attackers to inject arbitrary web script or HTML via the errmsg parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
59923 | CVE-2006-1209 | PHP Advanced Transfer Manager 1.00 through 1.30 stores sensitive information, including password hashes, under the web root with insufficient access control, which allows remote attackers to download each password hash via a direct request for a users/[USERNAME] file. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
60947 | CVE-2006-2244 | Multiple SQL injection vulnerabilities in Web4Future News Portal allow remote attackers to execute arbitrary SQL commands via the ID parameter to (1) comentarii.php or (2) view.php. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
62227 | CVE-2006-3553 | PlaNet Concept planetNews allows remote attackers to bypass authentication and execute arbitrary code via a direct request to news/admin/planetnews.php. | 2 | 10 | High | 2016-12-20 | 2008-09-05 | View |
Page 16126 of 17672, showing 5 records out of 88360 total, starting on record 80626, ending on 80630