NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53986 | CVE-2007-1814 | SQL injection vulnerability in viewcat.php in the Core module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2007-0377. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
54242 | CVE-2007-2072 | ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in Ivan Gallery Script 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the dir parameter. NOTE: this issue has been disputed by third party researchers for 0.3, stating that the dir variable is properly initialized before use. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
54498 | CVE-2007-2331 | PHP remote file inclusion vulnerability in cart.php in Shop-Script 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the lang_list parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
55010 | CVE-2007-2850 | The Session Reliability Service (XTE) in Citrix MetaFrame Presentation Server 3.0, Presentation Server 4.0, and Access Essentials 1.0 and 1.5, allows remote attackers to bypass network security policies and connect to arbitrary TCP ports via a modified address:port string. | 2 | 10 | High | 2017-01-07 | 2014-07-31 | View | |
55266 | CVE-2007-3112 | graph_image.php in Cacti 0.8.6i, and possibly other versions, allows remote authenticated users to cause a denial of service (CPU consumption) via a large value of the (1) graph_start or (2) graph_end parameter, different vectors than CVE-2007-3113. | 2 | 7.8 | High | 2017-01-07 | 2012-10-30 | View |
Page 16530 of 17672, showing 5 records out of 88360 total, starting on record 82646, ending on 82650