NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
53740  CVE-2007-1556  SQL injection vulnerability in kommentare.php in Creative Files 1.2 allows remote attackers to execute arbitrary SQL commands via the dlid parameter.    7.5  High  2017-01-07  2008-11-13  View
53996  CVE-2007-1824  Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the "." character.    5.1  Medium  2017-01-07  2012-11-05  View
54252  CVE-2007-2082  Direct static code injection vulnerability in admin/settings.php in MyBlog 0.9.8 and earlier allows remote authenticated admin users to inject arbitrary PHP code via the content parameter, which can be executed by accessing index.php. NOTE: a separate vulnerability could be leveraged to make this issue exploitable by remote unauthenticated attackers.    6.5  Medium  2017-01-07  2008-11-13  View
54508  CVE-2007-2341  PHP remote file inclusion vulnerability in suite/index.php in phpBandManager 0.8 allows remote attackers to execute arbitrary PHP code via a URL in the pg parameter.    7.5  High  2017-01-07  2011-03-07  View
54764  CVE-2007-2600  Multiple cross-site scripting (XSS) vulnerabilities in TutorialCMS (aka Photoshop Tutorials) 1.00 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) catFile parameter to (a) browseCat.php or (b) browseSubCat.php; the (2) id parameter to (c) openTutorial.php, (d) topFrame.php, or (e) admin/editListing.php; or the (3) search parameter to search.php.    6.8  Medium  2017-01-07  2012-11-05  View

Page 16516 of 17672, showing 5 records out of 88360 total, starting on record 82576, ending on 82580

Actions