NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 55314 | CVE-2007-3160 | PHP remote file inclusion vulnerability in admin/header.php in PHP Real Estate Classifieds Premium Plus allows remote attackers to execute arbitrary PHP code via a URL in the loc parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 55826 | CVE-2007-3677 | Multiple SQL injection vulnerabilities in Maxsi eVisit Analyst allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) idsp1.pl, (2) ip.pl, and (3) einsite_director.pl. NOTE: this issue can be leveraged for path disclosure from resulting error messages. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
| 56338 | CVE-2007-4207 | SQL injection vulnerability in admin_console/index.asp in Gallery In A Box allows remote attackers to execute arbitrary SQL commands via the (1) Username or (2) Password field. NOTE: these fields might be associated with the txtUsername and txtPassword parameters. | 2 | 7.5 | High | 2017-01-07 | 2011-08-08 | View | |
| 57874 | CVE-2007-5823 | Directory traversal vulnerability in forum.php in Ben Ng Scribe 0.2 and earlier allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the username parameter in a Register action. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 58386 | CVE-2007-6391 | SQL injection vulnerability in patch/comments.php in SH-News 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View |
Page 2148 of 17672, showing 5 records out of 88360 total, starting on record 10736, ending on 10740