NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
52731 | CVE-2007-0507 | SQL injection vulnerability in the Acidfree module for Drupal before 4.6.x-1.0, and before 4.7.x-1.0 in the 4.7 series, allows remote authenticated users with "create acidfree albums" privileges to execute arbitrary SQL commands via node titles. | 2 | 6 | Medium | 2017-01-07 | 2011-03-07 | View | |
52987 | CVE-2007-0767 | Cross-site scripting (XSS) vulnerability in the core in Phorum before 5.1.18 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-07 | 2013-07-04 | View | |
53243 | CVE-2007-1035 | Unspecified vulnerability in certain demonstration scripts in getID3 1.7.1, as used in the Mediafield and Audio modules for Drupal, allows remote attackers to read and delete arbitrary files, list arbitrary directories, and write to empty files or .mp3 files via unknown vectors. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
53499 | CVE-2007-1301 | Stack-based buffer overflow in the IMAP service in MailEnable Enterprise and Professional Editions 2.37 and earlier allows remote authenticated users to execute arbitrary code via a long argument to the APPEND command. NOTE: this is probably different than CVE-2006-6423. | 2 | 9 | High | 2017-01-07 | 2011-03-07 | View | |
53755 | CVE-2007-1571 | PHP remote file inclusion vulnerability in includes/base.php in Radical Designs Activist Mobilization Platform (AMP) 3.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the base_path parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 17042 of 17672, showing 5 records out of 88360 total, starting on record 85206, ending on 85210