NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
55300 | CVE-2007-3146 | Zen Help Desk 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing a password via a direct request for ZenHelpDesk.mdb. | 2 | 5 | Medium | 2017-01-07 | 2012-10-30 | View | |
55556 | CVE-2007-3404 | Directory traversal vulnerability in ShowImage.php in SiteDepth CMS 3.44 allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
55812 | CVE-2007-3662 | Media Player Classic (MPC) 6.4.9.0 allows user-assisted remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted FLV file. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
56324 | CVE-2007-4193 | Multiple cross-site request forgery (CSRF) vulnerabilities in index.php in IDE Group DVD Rental System (DRS) 5.1 before 20070801 allow remote attackers to perform certain actions as arbitrary users, as demonstrated by (1) modifying data or (2) canceling a subscription. NOTE: it is not clear whether IDE Group updates all DRS installations in its role as an application service provider. If so, then this issue should not be included in CVE. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
56580 | CVE-2007-4455 | The SIP channel driver (chan_sip) in Asterisk Open Source 1.4.x before 1.4.11, AsteriskNOW before beta7, Asterisk Appliance Developer Kit 0.x before 0.8.0, and s800i (Asterisk Appliance) 1.x before 1.0.3 allows remote attackers to cause a denial of service (memory exhaustion) via a SIP dialog that causes a large number of history entries to be created. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 182 of 17672, showing 5 records out of 88360 total, starting on record 906, ending on 910