NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54014  CVE-2007-1842  Directory traversal vulnerability in login.php in JSBoard before 2.0.12 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the table parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, a related issue to CVE-2006-2019.    7.5  High  2017-01-07  2011-03-07  View
54270  CVE-2007-2100  FAC Guestbook 2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/Gdb.mdb.    10  High  2017-01-07  2008-09-05  View
54526  CVE-2007-2359  Buffer overflow in Ghost Service Manager, as used in Symantec Norton Ghost, Norton Save & Recovery, LiveState Recovery, and BackupExec System Recovery before 20070426, allows local users to gain privileges via a long string.    7.2  High  2017-01-07  2011-03-07  View
54782  CVE-2007-2618  CRLF injection vulnerability in index.php in Drake CMS 0.4.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the lang parameter. NOTE: Drake CMS has only a beta version available, and the vendor has previously stated "We do not consider security reports valid until the first official release of Drake CMS."    5.1  Medium  2017-01-07  2012-10-30  View
55038  CVE-2007-2878  The VFAT compat ioctls in the Linux kernel before 2.6.21.2, when run on a 64-bit system, allow local users to corrupt a kernel_dirent struct and cause a denial of service (system crash) via unknown vectors.    4.9  Medium  2017-01-07  2012-11-05  View

Page 17604 of 17672, showing 5 records out of 88360 total, starting on record 88016, ending on 88020

Actions