NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 53018 | CVE-2007-0801 | The nsExternalAppHandler::SetUpTempFile function in Mozilla Firefox 1.5.0.9 creates temporary files with predictable filenames based on creation time, which allows remote attackers to execute arbitrary web script or HTML via a crafted XMLHttpRequest. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 53274 | CVE-2007-1066 | Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client use an insecure default Discretionary Access Control Lists (DACL) for the connection client GUI, which allows local users to gain privileges by injecting "a thread under ConnectionClient.exe," aka CSCsg20558. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 53530 | CVE-2007-1344 | Multiple buffer overflows in src/ezstream.c in Ezstream before 0.3.0 allow remote attackers to execute arbitrary code via a crafted XML configuration file processed by the (1) urlParse function, which causes a stack-based overflow and the (2) ReplaceString function, which causes a heap-based overflow. NOTE: some of these details are obtained from third party information. | 2 | 9.3 | High | 2017-01-07 | 2011-03-07 | View | |
| 53786 | CVE-2007-1602 | SQL injection vulnerability in check_vote.php in Weekly Drawing Contest 0.0.1 allows remote attackers to execute arbitrary SQL commands via the order parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
| 54042 | CVE-2007-1871 | Cross-site scripting (XSS) vulnerability in chcounter 3.1.3 allows remote attackers to inject arbitrary web script or HTML via the login_name parameter to /stats/. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 2174 of 17672, showing 5 records out of 88360 total, starting on record 10866, ending on 10870