NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
56248 | CVE-2007-4117 | ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in phpWebFileManager 0.5 allows remote attackers to execute arbitrary PHP code via a URL in the PN_PathPrefix parameter. NOTE: this issue is disputed by a reliable third party, who demonstrates that PN_PathPrefix is defined before use. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
56504 | CVE-2007-4379 | Babo Violent 2 2.08.00 and earlier allows remote attackers to cause a denial of service (application crash) via (1) a value greater than 0x27 for the (a) 0xca, (b) 0xcb, (c) 0xcc, (d) 0xce, (e) 0xcf, or (f) 0xd0 data ID; (2) a nonexistent map name; or (3) a UDP packet that specifies a large data size. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
57016 | CVE-2007-4926 | The AXIS 207W camera uses a base64-encoded cleartext username and password for authentication, which allows remote attackers to obtain sensitive information by sniffing the wireless network or by leveraging unspecified other vectors. | 2 | 9.3 | High | 2017-01-07 | 2008-09-05 | View | |
58296 | CVE-2007-6301 | Cross-site scripting (XSS) vulnerability in compose.php in OpenNewsletter 2.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the type parameter. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
59576 | CVE-2006-0846 | Multiple cross-site scripting (XSS) vulnerabilities in Leif M. Wright"s Blog 3.5 allow remote attackers to inject arbitrary web script or HTML via the (1) Referer and (2) User-Agent HTTP headers, which are stored in a log file and not sanitized when the administrator views the "Log" page, possibly using the ViewCommentsLog function. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17208 of 17672, showing 5 records out of 88360 total, starting on record 86036, ending on 86040