NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55837  CVE-2007-3688  Multiple cross-site request forgery (CSRF) vulnerabilities in DotClear 1.2.6 allow remote attackers to perform actions as arbitrary users via the (1) tool_url parameter to ecrire/tools.php and multiple fields on the (2) blogconf, (3) blogroll, (4) ecrire/redacteur.php, and (5) ecrire/user_prefs.php pages.    2.6  Low  2017-01-07  2012-11-05  View
56093  CVE-2007-3957  Buffer overflow in Nipun Jain xserver 0.1 alpha allows remote attackers to cause a denial of service via a POST request with a long URI.    Medium  2017-01-07  2008-09-05  View
56349  CVE-2007-4220  Directory traversal vulnerability in Motorola Timbuktu Pro before 8.6.5 for Windows allows remote attackers to create or delete arbitrary files via a .. (dot dot) in a Send request, probably related to the (1) Send and (2) Exchange services.    7.8  High  2017-01-07  2011-03-07  View
56605  CVE-2007-4482  Cross-site scripting (XSS) vulnerability in index.php in the Pool 1.0.7 theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).    4.3  Medium  2017-01-07  2008-11-15  View
56861  CVE-2007-4744  PHP remote file inclusion vulnerability in environment.php in AnyInventory 1.9.1 and 2.0, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the DIR_PREFIX parameter.    6.8  Medium  2017-01-07  2008-09-05  View

Page 2029 of 17672, showing 5 records out of 88360 total, starting on record 10141, ending on 10145

Actions