NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53740 | CVE-2007-1556 | SQL injection vulnerability in kommentare.php in Creative Files 1.2 allows remote attackers to execute arbitrary SQL commands via the dlid parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
53996 | CVE-2007-1824 | Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the "." character. | 2 | 5.1 | Medium | 2017-01-07 | 2012-11-05 | View | |
54252 | CVE-2007-2082 | Direct static code injection vulnerability in admin/settings.php in MyBlog 0.9.8 and earlier allows remote authenticated admin users to inject arbitrary PHP code via the content parameter, which can be executed by accessing index.php. NOTE: a separate vulnerability could be leveraged to make this issue exploitable by remote unauthenticated attackers. | 2 | 6.5 | Medium | 2017-01-07 | 2008-11-13 | View | |
54508 | CVE-2007-2341 | PHP remote file inclusion vulnerability in suite/index.php in phpBandManager 0.8 allows remote attackers to execute arbitrary PHP code via a URL in the pg parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
54764 | CVE-2007-2600 | Multiple cross-site scripting (XSS) vulnerabilities in TutorialCMS (aka Photoshop Tutorials) 1.00 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) catFile parameter to (a) browseCat.php or (b) browseSubCat.php; the (2) id parameter to (c) openTutorial.php, (d) topFrame.php, or (e) admin/editListing.php; or the (3) search parameter to search.php. | 2 | 6.8 | Medium | 2017-01-07 | 2012-11-05 | View |
Page 16516 of 17672, showing 5 records out of 88360 total, starting on record 82576, ending on 82580