NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55026  CVE-2007-2866  Multiple SQL injection vulnerabilities in modules/admin/modules/gallery.php in PHPEcho CMS 2.0-rc1 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter and possibly other parameters. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-07  2011-03-07  View
55282  CVE-2007-3128  SQL injection vulnerability in content.php in WSPortal 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the page parameter.    6.4  Medium  2017-01-07  2011-03-07  View
55538  CVE-2007-3386  Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.24 allows remote attackers to inject arbitrary HTML and web script via crafted requests, as demonstrated using the aliases parameter to an html/add action.    4.3  Medium  2017-01-07  2011-03-07  View
55794  CVE-2007-3644  archive_read_support_format_tar.c in libarchive before 2.2.4 allows user-assisted remote attackers to cause a denial of service (infinite loop) via (1) an end-of-file condition within a pax extension header or (2) a malformed pax extension header in an (a) PAX or a (b) TAR archive.    4.3  Medium  2017-01-07  2012-10-29  View
56050  CVE-2007-3912  checkrestart in debian-goodies before 0.34 allows local users to gain privileges via shell metacharacters in the name of the executable file for a running process.    7.2  High  2017-01-07  2009-02-05  View

Page 16431 of 17672, showing 5 records out of 88360 total, starting on record 82151, ending on 82155

Actions