NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52783  CVE-2007-0559  PHP remote file inclusion vulnerability in config.php in RPW 1.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the sql_language parameter.    7.5  High  2017-01-07  2011-03-07  View
53295  CVE-2007-1087  IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 does not properly terminate certain input strings, which allows local users to execute arbitrary code via unspecified environment variables that trigger a heap-based buffer overflow.    7.2  High  2017-01-07  2008-11-15  View
54319  CVE-2007-2149  Stephen Craton (aka WiredPHP) Chatness 2.5.3 and earlier stores usernames and unencrypted passwords in (1) classes/vars.php and (2) classes/varstuff.php, and recommends 0666 or 0777 permissions for these files, which allows local users to gain privileges by reading the files, and allows remote attackers to obtain credentials via a direct request for admin/options.php.    10  High  2017-01-07  2011-03-07  View
54831  CVE-2007-2667  Buffer overflow in the DB Software Laboratory VImpX ActiveX control in VImpX.ocx 4.7.3 allows remote attackers to execute arbitrary code via a long LogFile parameter.    9.3  High  2017-01-07  2008-11-15  View
56879  CVE-2007-4762  Multiple SQL injection vulnerabilities in embadmin/login.asp in E-SMARTCART 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass fields, different vectors than CVE-2007-0092.    7.5  High  2017-01-07  2009-09-16  View

Page 1617 of 17672, showing 5 records out of 88360 total, starting on record 8081, ending on 8085

Actions