NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54509 | CVE-2007-2342 | SQL injection vulnerability in error.asp in CreaScripts CreaDirectory 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2006-6083. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
54765 | CVE-2007-2601 | Buffer overflow in a certain ActiveX control in the GDivX Zenith Player AviFixer class in fix.dll 1.0.0.1 allows remote attackers to execute arbitrary code via a long SetInputFile property value. | 2 | 9.3 | High | 2017-01-07 | 2008-11-15 | View | |
55021 | CVE-2007-2861 | Multiple PHP remote file inclusion vulnerabilities in Simple Accessible XHTML Online News (SAXON) 4.6 allow remote attackers to execute arbitrary PHP code via a URL in the template parameter to (1) news.php, (2) preview.php, or (3) archive-display.php. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
56045 | CVE-2007-3907 | Unspecified vulnerability in login.pl in LedgerSMB 1.2.0 through 1.2.6 allows remote attackers to bypass authentication and perform certain actions as an arbitrary user via unspecified vectors involving a URL with a redirect parameter value, along with a callback parameter containing an escaped URL that specifies the action. | 2 | 10 | High | 2017-01-07 | 2011-03-07 | View | |
56301 | CVE-2007-4170 | Multiple PHP remote file inclusion vulnerabilities in AL-Athkar 2.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) include parameter to (a) Main.php and (b) get.php and the (2) exec parameter to (c) count.php. | 2 | 10 | High | 2017-01-07 | 2008-09-05 | View |
Page 16842 of 17672, showing 5 records out of 88360 total, starting on record 84206, ending on 84210