NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58134  CVE-2007-6127  Multiple SQL injection vulnerabilities in project alumni 1.0.9 and earlier allow remote attackers to execute arbitrary SQL commands via the year parameter to (1) view.page.inc.php, which is reachable through a view action to index.php; or (2) the year parameter to news.page.inc.php, which is reachable through a news action to index.php.    7.5  High  2017-01-07  2011-03-07  View
58390  CVE-2007-6395  Flat PHP Board 1.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain credentials via a direct request for the username php file for any user account in users/.    Medium  2017-01-07  2008-11-15  View
58646  CVE-2007-6651  Directory traversal vulnerability in wiki/edit.php in Bitweaver R2 CMS allows remote attackers to obtain sensitive information (script source code) via a .. (dot dot) in the suck_url parameter.    Medium  2017-01-07  2008-11-15  View
58902  CVE-2006-0162  Heap-based buffer overflow in libclamav/upx.c in Clam Antivirus (ClamAV) before 0.88 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted UPX files.    7.5  High  2016-12-20  2011-03-07  View
59158  CVE-2006-0420  BEA WebLogic Server and WebLogic Express 8.1 through SP4 and 7.0 through SP6 does not properly handle when servlets use relative forwarding, which allows remote attackers to cause a denial of service (slowdown) via unknown attack vectors that cause "looping stack overflow errors."    Medium  2016-12-20  2008-09-05  View

Page 1907 of 17672, showing 5 records out of 88360 total, starting on record 9531, ending on 9535

Actions