NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
52783 | CVE-2007-0559 | PHP remote file inclusion vulnerability in config.php in RPW 1.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the sql_language parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
53295 | CVE-2007-1087 | IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 does not properly terminate certain input strings, which allows local users to execute arbitrary code via unspecified environment variables that trigger a heap-based buffer overflow. | 2 | 7.2 | High | 2017-01-07 | 2008-11-15 | View | |
54319 | CVE-2007-2149 | Stephen Craton (aka WiredPHP) Chatness 2.5.3 and earlier stores usernames and unencrypted passwords in (1) classes/vars.php and (2) classes/varstuff.php, and recommends 0666 or 0777 permissions for these files, which allows local users to gain privileges by reading the files, and allows remote attackers to obtain credentials via a direct request for admin/options.php. | 2 | 10 | High | 2017-01-07 | 2011-03-07 | View | |
54831 | CVE-2007-2667 | Buffer overflow in the DB Software Laboratory VImpX ActiveX control in VImpX.ocx 4.7.3 allows remote attackers to execute arbitrary code via a long LogFile parameter. | 2 | 9.3 | High | 2017-01-07 | 2008-11-15 | View | |
56879 | CVE-2007-4762 | Multiple SQL injection vulnerabilities in embadmin/login.asp in E-SMARTCART 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass fields, different vectors than CVE-2007-0092. | 2 | 7.5 | High | 2017-01-07 | 2009-09-16 | View |
Page 1617 of 17672, showing 5 records out of 88360 total, starting on record 8081, ending on 8085