NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
55026 | CVE-2007-2866 | Multiple SQL injection vulnerabilities in modules/admin/modules/gallery.php in PHPEcho CMS 2.0-rc1 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter and possibly other parameters. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
55282 | CVE-2007-3128 | SQL injection vulnerability in content.php in WSPortal 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the page parameter. | 2 | 6.4 | Medium | 2017-01-07 | 2011-03-07 | View | |
55538 | CVE-2007-3386 | Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.24 allows remote attackers to inject arbitrary HTML and web script via crafted requests, as demonstrated using the aliases parameter to an html/add action. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
55794 | CVE-2007-3644 | archive_read_support_format_tar.c in libarchive before 2.2.4 allows user-assisted remote attackers to cause a denial of service (infinite loop) via (1) an end-of-file condition within a pax extension header or (2) a malformed pax extension header in an (a) PAX or a (b) TAR archive. | 2 | 4.3 | Medium | 2017-01-07 | 2012-10-29 | View | |
56050 | CVE-2007-3912 | checkrestart in debian-goodies before 0.34 allows local users to gain privileges via shell metacharacters in the name of the executable file for a running process. | 2 | 7.2 | High | 2017-01-07 | 2009-02-05 | View |
Page 16431 of 17672, showing 5 records out of 88360 total, starting on record 82151, ending on 82155