NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54759 | CVE-2007-2595 | RSAuction 2.73.1.3 allows remote authenticated users to move their own account status from Suspended to Active via a direct request for the activation URL that is provided at the time of account registration. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 6.5 | Medium | 2017-01-07 | 2008-11-15 | View | |
55271 | CVE-2007-3117 | Cross-site scripting (XSS) vulnerability in the SEO module in ADPLAN 3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to HTTP headers. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
55527 | CVE-2007-3375 | Stack-based buffer overflow in Lhaca File Archiver before 1.21 allows user-assisted remote attackers to execute arbitrary code via a crafted LZH archive, as exploited by malware such as Trojan.Lhdropper. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
55783 | CVE-2007-3633 | Absolute path traversal vulnerability in the Chilkat Software Chilkat Zip ActiveX control in ChilkatZip2.dll 12.4.2.0 allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the (1) SaveLastError method and probably the (2) WriteExe method. | 2 | 6.4 | Medium | 2017-01-07 | 2012-12-18 | View | |
56551 | CVE-2007-4426 | Live for Speed (LFS) S1 and S2 allows remote attackers to cause a denial of service (server crash) via (1) a certain 0x00 byte in a pre-login ID 3 packet, which triggers a NULL dereference; or (2) a pre-login ID 5 packet that lacks certain strings, which triggers an invalid pointer dereference. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 16817 of 17672, showing 5 records out of 88360 total, starting on record 84081, ending on 84085