NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
52461 | CVE-2007-0232 | PHP remote file inclusion vulnerability in routines/fieldValidation.php in Jshop Server 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the jssShopFileSystem parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
52717 | CVE-2007-0493 | Use-after-free vulnerability in ISC BIND 9.3.0 up to 9.3.3, 9.4.0a1 up to 9.4.0a6, 9.4.0b1 up to 9.4.0b4, 9.4.0rc1, and 9.5.0a1 (Bind Forum only) allows remote attackers to cause a denial of service (named daemon crash) via unspecified vectors that cause named to "dereference a freed fetch context." | 2 | 7.8 | High | 2017-01-07 | 2016-12-06 | View | |
52973 | CVE-2007-0752 | The PPP daemon (pppd) in Apple Mac OS X 10.4.8 checks ownership of the stdin file descriptor to determine if the invoker has sufficient privileges, which allows local users to load arbitrary plugins and gain root privileges by bypassing this check. | 2 | 7.2 | High | 2017-01-07 | 2013-07-06 | View | |
53229 | CVE-2007-1021 | SQL injection vulnerability in inc_listnews.asp in CodeAvalanche News 1.x allows remote attackers to execute arbitrary SQL commands via the CAT_ID parameter. | 2 | 10 | High | 2017-01-07 | 2011-03-07 | View | |
53485 | CVE-2007-1287 | A regression error in the phpinfo function in PHP 4.4.3 to 4.4.6, and PHP 6.0 in CVS, allows remote attackers to conduct cross-site scripting (XSS) attacks via GET, POST, or COOKIE array values, which are not escaped in the phpinfo output, as originally fixed for CVE-2005-3388. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 16439 of 17672, showing 5 records out of 88360 total, starting on record 82191, ending on 82195