NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53806 | CVE-2007-1622 | Cross-site scripting (XSS) vulnerability in wp-admin/vars.php in WordPress before 2.0.10 RC2, and before 2.1.3 RC2 in the 2.1 series, allows remote authenticated users with theme privileges to inject arbitrary web script or HTML via the PATH_INFO in the administration interface, related to loose regular expression processing of PHP_SELF. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
54318 | CVE-2007-2148 | Direct static code injection vulnerability in admin/save.php in Stephen Craton (aka WiredPHP) Chatness 2.5.3 and earlier allows remote authenticated administrators to inject PHP code into .html files via the html parameter, as demonstrated by head.html and foot.html, which are included and executed upon a direct request for index.php. NOTE: a separate vulnerability could be leveraged to make this issue exploitable by remote unauthenticated attackers. | 2 | 6.5 | Medium | 2017-01-07 | 2011-03-07 | View | |
54574 | CVE-2007-2407 | The Samba server on Apple Mac OS X 10.3.9 and 10.4.10, when Windows file sharing is enabled, does not enforce disk quotas after dropping privileges, which allows remote authenticated users to use disk space in excess of quota. | 2 | 4 | Medium | 2017-01-07 | 2011-03-07 | View | |
55086 | CVE-2007-2927 | Unspecified vulnerability in Atheros 802.11 a/b/g wireless adapter drivers before 5.3.0.35, and 6.x before 6.0.3.67, on Windows allows remote attackers to cause a denial of service via a crafted 802.11 management frame. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
56366 | CVE-2007-4237 | Buffer overflow in the atm subset in arp in devices.common.IBM.atm.rte in AIX 5.2 and 5.3 allows local users to gain root privileges. | 2 | 6.9 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 1689 of 17672, showing 5 records out of 88360 total, starting on record 8441, ending on 8445