NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53239 | CVE-2007-1031 | Directory traversal vulnerability in include/db_conn.php in SpoonLabs Vivvo Article Management CMS 3.4 allows remote attackers to include and execute arbitrary local files via the root parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2009-03-16 | View | |
54007 | CVE-2007-1835 | PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions. | 2 | 4.6 | Medium | 2017-01-07 | 2012-11-05 | View | |
54775 | CVE-2007-2611 | Multiple PHP remote file inclusion vulnerabilities in CGX 20050314 allow remote attackers to execute arbitrary PHP code via a URL in the pathCGX parameter to (1) mtdialogo.php, (2) ltdialogo.php, (3) login.php, and (4) logingecon.php in inc/; and multiple unspecified files in frm/, sql/, and cns/. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
55031 | CVE-2007-2871 | Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and SeaMonkey 1.0.9 and 1.1.2, allows remote attackers to spoof or hide the browser chrome, such as the location bar, by placing XUL popups outside of the browser"s content pane. NOTE: this issue can be leveraged for phishing and other attacks. | 2 | 4.3 | Medium | 2017-01-07 | 2012-11-05 | View | |
55287 | CVE-2007-3133 | SQL injection vulnerability in urunbak.asp in W1L3D4 WEBmarket 0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2012-11-05 | View |
Page 17387 of 17672, showing 5 records out of 88360 total, starting on record 86931, ending on 86935