NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54065 | CVE-2007-1895 | PHP remote file inclusion vulnerability in chat.php in Sky GUNNING MySpeach 3.0.7 and earlier, when used with PHP 5, allows remote attackers to execute arbitrary PHP code via an ftp URL in a my_ms[root] cookie, a different vector than CVE-2007-0491 and CVE-2006-4630. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
54321 | CVE-2007-2151 | The administration server in McAfee e-Business Server before 8.1.1 and 8.5.x before 8.5.2 allows remote attackers to cause a denial of service (service crash) via a large length value in a malformed authentication packet, which triggers a heap over-read. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
54577 | CVE-2007-2410 | WebCore on Apple Mac OS X 10.3.9 and 10.4.10 retains properties of certain global objects when a new URL is visited in the same window, which allows remote attackers to conduct cross-site scripting (XSS) attacks. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
54833 | CVE-2007-2669 | Multiple cross-site scripting (XSS) vulnerabilities in PHPChain 1.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the catid parameter to (1) settings.php or (2) cat.php. NOTE: certain parameter values also trigger path disclosure. | 2 | 4.3 | Medium | 2017-01-07 | 2012-11-05 | View | |
55089 | CVE-2007-2930 | The (1) NSID_SHUFFLE_ONLY and (2) NSID_USE_POOL PRNG algorithms in ISC BIND 8 before 8.4.7-P1 generate predictable DNS query identifiers when sending outgoing queries such as NOTIFY messages when answering questions as a resolver, which allows remote attackers to poison DNS caches via unknown vectors. NOTE: this issue is different from CVE-2007-2926. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 1794 of 17672, showing 5 records out of 88360 total, starting on record 8966, ending on 8970