NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53212 | CVE-2007-1004 | Mozilla Firefox might allow remote attackers to conduct spoofing and phishing attacks by writing to an about:blank tab and overlaying the location bar. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
53724 | CVE-2007-1540 | Directory traversal vulnerability in am.pl in (1) SQL-Ledger 2.6.27 and earlier, and (2) LedgerSMB before 1.2.0, allows remote attackers to run arbitrary executables and bypass authentication via a .. (dot dot) sequence and trailing NULL (%00) in the login parameter. NOTE: this issue was reportedly addressed in SQL-Ledger 2.6.27, however third-party researchers claim that the file is still executed even though an error is generated. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
54236 | CVE-2007-2066 | UseBB before 1.0.6 allows remote attackers to obtain sensitive information via a request with unspecified GET or POST parameters to an unspecified script, which reveals the path in an error message. | 2 | 5 | Medium | 2017-01-07 | 2008-09-05 | View | |
55260 | CVE-2007-3106 | lib/info.c in libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via invalid (1) blocksize_0 and (2) blocksize_1 values, which trigger a "heap overwrite" in the _01inverse function in res0.c. NOTE: this issue has been RECAST so that CVE-2007-4029 handles additional vectors. | 2 | 6.8 | Medium | 2017-01-07 | 2011-10-11 | View | |
55516 | CVE-2007-3364 | Cross-site scripting (XSS) vulnerability in the cgi-bin/post.mscgi sample page in MyServer 0.8.9 allows remote attackers to inject arbitrary web script or HTML via the body content. | 2 | 4.3 | Medium | 2017-01-07 | 2012-10-30 | View |
Page 16425 of 17672, showing 5 records out of 88360 total, starting on record 82121, ending on 82125