NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54256 | CVE-2007-2086 | Multiple PHP remote file inclusion vulnerabilities in CNStats 2.9 allow remote attackers to execute arbitrary PHP code via a URL in the bj parameter to (1) who_r.php or (2) who_s.php in reports/. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
56048 | CVE-2007-3910 | Cross-site scripting (XSS) vulnerability in Bandersnatch 0.4 allows remote attackers to inject arbitrary JavaScript via a Jabber resource name and possibly other data items, which are stored in conversation logs. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
56560 | CVE-2007-4435 | Multiple SQL injection vulnerabilities in TorrentTrader before 1.07 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) account-inbox.php, (2) account-settings.php, and possibly (3) backend/functions.php. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
57328 | CVE-2007-5252 | Buffer overflow in NetSupport Manager (NSM) Client 10.00 and 10.20, and NetSupport School Student (NSS) 9.00, allows remote NSM servers to cause a denial of service or possibly execute arbitrary code via crafted data in the configuration exchange phase of an initial connection setup. NOTE: a vendor statement, which is too vague to be sure that it is for this particular issue, says that only a denial of service is possible. | 2 | 10 | High | 2017-01-07 | 2008-09-05 | View | |
58096 | CVE-2007-6087 | Cross-site request forgery (CSRF) vulnerability in index.php in VigileCMS 1.4 allows remote attackers to change the admin password via certain parameters to the changepass module. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View |
Page 17551 of 17672, showing 5 records out of 88360 total, starting on record 87751, ending on 87755