NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56124  CVE-2007-3988  Session fixation vulnerability in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.    6.8  Medium  2017-01-07  2008-09-05  View
57148  CVE-2007-5060  Cross-site request forgery (CSRF) vulnerability in the cpass functionality in an admin action in index.php in XCMS allows remote attackers to change arbitrary passwords via certain password_ and rpassword_ parameters, possibly related to timestamp values.    4.3  Medium  2017-01-07  2008-09-05  View
58172  CVE-2007-6169  SQL injection vulnerability in admin/index2.asp in GOUAE DWD Realty allows remote attackers to execute arbitrary SQL commands via the uname parameter, a different vector than CVE-2007-6163. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2017-01-07  2008-09-05  View
59196  CVE-2006-0458  The DCC ACCEPT command handler in irssi before 0.8.9+0.8.10rc5-0ubuntu4.1 in Ubuntu Linux, and possibly other distributions, allows remote attackers to cause a denial of service (application crash) via certain crafted arguments in a DCC command.    Medium  2016-12-20  2008-09-05  View
60732  CVE-2006-2027  Buffer overflow in Unicode processing in the logging functionality in Pablo Software Solutions Quick "n Easy FTP Server Professional and Lite, probably 3.0, allows remote authenticated users to execute arbitrary code by sending a command with a long argument, which triggers a buffer overflow when an admin selects the Logging section in the FTP server main window. NOTE: the original researcher claims that the vendor disputes this issue.    6.5  Medium  2016-12-20  2008-09-05  View

Page 16363 of 17672, showing 5 records out of 88360 total, starting on record 81811, ending on 81815

Actions