NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
52466 | CVE-2007-0237 | The ndeb-binary feature in Lookup (lookup-el) allows local users to overwrite arbitrary files via a symlink attack on temporary files. | 2 | 4.6 | Medium | 2017-01-07 | 2008-11-13 | View | |
53746 | CVE-2007-1562 | The FTP protocol implementation in Mozilla Firefox before 1.5.0.11 and 2.x before 2.0.0.3 allows remote attackers to force the client to connect to other servers, perform a proxied port scan, or obtain sensitive information by specifying an alternate server address in an FTP PASV response. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
54002 | CVE-2007-1830 | Unspecified vulnerability in the Username Hijacking Patch 20070312 for web-app.org WebAPP 0.9.9.6 allows remote attackers to obtain administrative access via unknown vectors, related to "something overlooked in the original that was still overlooked in the patch", and possibly related to copying files to the user-lib and the "XSS and cookies exploit." | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-13 | View | |
55282 | CVE-2007-3128 | SQL injection vulnerability in content.php in WSPortal 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the page parameter. | 2 | 6.4 | Medium | 2017-01-07 | 2011-03-07 | View | |
55538 | CVE-2007-3386 | Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.24 allows remote attackers to inject arbitrary HTML and web script via crafted requests, as demonstrated using the aliases parameter to an html/add action. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 17198 of 17672, showing 5 records out of 88360 total, starting on record 85986, ending on 85990