NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
51188  CVE-2009-4035  The FoFiType1::parse function in fofi/FoFiType1.cc in Xpdf 3.0.0, gpdf 2.8.2, kpdf in kdegraphics 3.3.1, and possibly other libraries and versions, does not check the return value of the getNextLine function, which allows context-dependent attackers to execute arbitrary code via a PDF file with a crafted Type 1 font that can produce a negative value, leading to a signed-to-unsigned integer conversion error and a buffer overflow.    9.3  High  2017-01-07  2010-08-21  View
51700  CVE-2009-4583  SQL injection vulnerability in the DhForum (com_dhforum) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a grouplist action to index.php.    7.5  High  2017-01-07  2010-01-07  View
52468  CVE-2007-0239  OpenOffice.org (OOo) Office Suite allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a prepared link in a crafted document.    9.3  High  2017-01-07  2011-03-07  View
52724  CVE-2007-0500  PHP remote file inclusion vulnerability in include/includes.php in Bradabra 2.0.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the include_path parameter.    7.5  High  2017-01-07  2011-03-07  View
52980  CVE-2007-0760  EQdkp 1.3.1 and earlier authenticates administrative requests by verifying that the HTTP Referer header specifies an admin/ URL, which allows remote attackers to read or modify account names and passwords via a spoofed Referer.    7.5  High  2017-01-07  2011-03-07  View

Page 17017 of 17672, showing 5 records out of 88360 total, starting on record 85081, ending on 85085

Actions