NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
53250 | CVE-2007-1042 | Directory traversal vulnerability in news.php in Xpression News (X-News) 1.0.1, when magic_quotes_gpc is disabled, allows remote attackers to include arbitrary files or obtain sensitive information via a .. (dot dot) in the xnews-template parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5.8 | Medium | 2017-01-07 | 2009-03-16 | View | |
53506 | CVE-2007-1308 | ecma/kjs_html.cpp in KDE JavaScript (KJS), as used in Konqueror in KDE 3.5.5, allows remote attackers to cause a denial of service (crash) by accessing the content of an iframe with an ftp:// URI in the src attribute, probably due to a NULL pointer dereference. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View | |
53762 | CVE-2007-1578 | Multiple integer signedness errors in the NTLM implementation in Atrium MERCUR IMAPD (mcrimap4.exe) 5.00.14, with SP4, allow remote attackers to execute arbitrary code via a long NTLMSSP argument that triggers a stack-based buffer overflow. | 2 | 10 | High | 2017-01-07 | 2011-03-07 | View | |
54018 | CVE-2007-1846 | SQL injection vulnerability in index.php in the MyAds 2.04jp and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter, different vectors than CVE-2006-3341. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View | |
54274 | CVE-2007-2104 | Multiple directory traversal vulnerabilities in iXon CMS 0.30 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme_url parameter to (1) index.php, (2) page.php, (3) search.php, (4) single.php, and (5) archives.php. | 2 | 7.5 | High | 2017-01-07 | 2008-11-13 | View |
Page 195 of 17672, showing 5 records out of 88360 total, starting on record 971, ending on 975