NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
57324  CVE-2007-5248  Multiple format string vulnerabilities in the ID Software Doom 3 engine, as used by Doom 3 1.3.1 and earlier, Quake 4 1.4.2 and earlier, and Prey 1.3 and earlier, when Punkbuster (PB) is enabled, allow remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via format string specifiers in (1) a PB_Y packet to the YPG server or (2) a PB_U packet to UCON. NOTE: this issue might be in Punkbuster itself, but there are insufficient details to be certain.    9.3  High  2017-01-07  2011-03-07  View
57836  CVE-2007-5785  SQL injection vulnerability in file.php in JobSite Professional 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-07  2011-03-07  View
58092  CVE-2007-6083  SQL injection vulnerability in admin/index.php in IceBB 1.0-rc6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header.    7.5  High  2017-01-07  2008-11-15  View
58348  CVE-2007-6353  Integer overflow in exif.cpp in exiv2 library allows context-dependent attackers to execute arbitrary code via a crafted EXIF file that triggers a heap-based buffer overflow.    7.5  High  2017-01-07  2011-03-07  View
59628  CVE-2006-0899  Directory traversal vulnerability in index.php in 4Images 1.7.1 and earlier allows remote attackers to read and include arbitrary files via ".." (dot dot) sequences in the template parameter.    7.5  High  2016-12-20  2011-03-07  View

Page 16817 of 17672, showing 5 records out of 88360 total, starting on record 84081, ending on 84085

Actions