NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53498 | CVE-2007-1300 | DOURAN Software Technologies ISPUtil 3.32.84.1, and possibly earlier versions, stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain user and reseller data via a direct request for scripts/activesessions.ini. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.8 | High | 2017-01-07 | 2008-11-13 | View | |
54010 | CVE-2007-1838 | SQL injection vulnerability in view.php in the Friendfinder 3.3 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
54266 | CVE-2007-2096 | PHP remote file inclusion vulnerability in common.php in Hinton Design PHPHD Download System (phphd_downloads) allows remote attackers to execute arbitrary PHP code via a URL in the phphd_real_path parameter. NOTE: this issue may be present in versions from 2006. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
54522 | CVE-2007-2355 | The get_url function in DODS_Dispatch.pm for the CGI_server in OPeNDAP 3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL. | 2 | 10 | High | 2017-01-07 | 2011-03-07 | View | |
54778 | CVE-2007-2614 | PHP remote file inclusion vulnerability in examples/widget8.php in phpHtmlLib 2.4.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phphtmllib parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View |
Page 17364 of 17672, showing 5 records out of 88360 total, starting on record 86816, ending on 86820