NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54013 | CVE-2007-1841 | The isakmp_info_recv function in src/racoon/isakmp_inf.c in racoon in Ipsec-tools before 0.6.7 allows remote attackers to cause a denial of service (tunnel crash) via crafted (1) DELETE (ISAKMP_NPTYPE_D) and (2) NOTIFY (ISAKMP_NPTYPE_N) messages. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
54269 | CVE-2007-2099 | Cross-site scripting (XSS) vulnerability in htdocs/php.php in OpenConcept Back-End CMS 0.4.7 allows remote attackers to inject arbitrary web script or HTML via the page[] parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-13 | View | |
55293 | CVE-2007-3139 | config/general.php in Quick.Cart 2.2 and earlier uses a default username and password, which allows remote attackers to access the application via a login action to admin.php. NOTE: this can be leveraged to upload and execute arbitrary code. | 2 | 6.8 | Medium | 2017-01-07 | 2012-10-30 | View | |
55549 | CVE-2007-3397 | The web container in IBM WebSphere Application Server (WAS) before 6.0.2.21, and 6.1.x before 6.1.0.9, sends response data intended for a different request in certain circumstances after a closed connection error, which might allow remote attackers to obtain sensitive information. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
55805 | CVE-2007-3655 | Stack-based buffer overflow in javaws.exe in Sun Java Web Start in JRE 5.0 Update 11 and earlier, and 6.0 Update 1 and earlier, allows remote attackers to execute arbitrary code via a long codebase attribute in a JNLP file. | 2 | 6.8 | Medium | 2017-01-07 | 2014-05-04 | View |
Page 17599 of 17672, showing 5 records out of 88360 total, starting on record 87991, ending on 87995