NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54782 | CVE-2007-2618 | CRLF injection vulnerability in index.php in Drake CMS 0.4.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the lang parameter. NOTE: Drake CMS has only a beta version available, and the vendor has previously stated "We do not consider security reports valid until the first official release of Drake CMS." | 2 | 5.1 | Medium | 2017-01-07 | 2012-10-30 | View | |
55038 | CVE-2007-2878 | The VFAT compat ioctls in the Linux kernel before 2.6.21.2, when run on a 64-bit system, allow local users to corrupt a kernel_dirent struct and cause a denial of service (system crash) via unknown vectors. | 2 | 4.9 | Medium | 2017-01-07 | 2012-11-05 | View | |
55294 | CVE-2007-3140 | SQL injection vulnerability in xmlrpc.php in WordPress 2.2 allows remote authenticated users to execute arbitrary SQL commands via a parameter value in an XML RPC wp.suggestCategories methodCall, a different vector than CVE-2007-1897. | 2 | 6.5 | Medium | 2017-01-07 | 2011-03-07 | View | |
55550 | CVE-2007-3398 | LiteWEB 2.7 allows remote attackers to cause a denial of service (hang) via a large number of requests for nonexistent pages. | 2 | 5 | Medium | 2017-01-07 | 2012-10-30 | View | |
55806 | CVE-2007-3656 | Mozilla Firefox before 1.8.0.13 and 1.8.1.x before 1.8.1.5 does not perform a security zone check when processing a wyciwyg URI, which allows remote attackers to obtain sensitive information, poison the browser cache, and possibly enable further attack vectors via (1) HTTP 302 redirect controls, (2) XMLHttpRequest, or (3) view-source URIs. | 2 | 6.8 | Medium | 2017-01-07 | 2012-10-30 | View |
Page 17246 of 17672, showing 5 records out of 88360 total, starting on record 86226, ending on 86230