NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 52760 | CVE-2007-0536 | The chroot helper in rMake for rPath Linux 1 does not drop supplemental groups, which causes packages to be installed with insecure permissions and might allow local users to gain privileges. | 2 | 7.2 | High | 2017-01-07 | 2008-11-13 | View | |
| 54552 | CVE-2007-2385 | The Yahoo! UI framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain the data via a web page that retrieves the data through a URL in the SRC attribute of a SCRIPT element and captures the data using other JavaScript code, aka "JavaScript Hijacking." | 2 | 5 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 53785 | CVE-2007-1601 | ** DISPUTED ** Directory traversal vulnerability in check_vote.php in Weekly Drawing Contest 0.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the order parameter. NOTE: another researcher disputes this vulnerability, noting that the order variable is not used in any context that allows opening files. | 2 | 5 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 52762 | CVE-2007-0538 | Telligent Community Server 2.1 and earlier allows remote attackers to cause a denial of service (bandwidth or thread consumption) via pingback service calls with a source URI that corresponds to (1) a large file, which triggers a long download session without a timeout constraint; or (2) a file with a binary content type, which is downloaded even though it cannot contain usable pingback data. | 2 | 5 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 55066 | CVE-2007-2906 | Java Embedding Plugin 0.9.6.1 allows remote attackers to cause a denial of service (browser crash) via a Thread subclass that calls super.run from its run method. | 2 | 5 | Medium | 2017-01-07 | 2008-11-13 | View |
Page 2228 of 17672, showing 5 records out of 88360 total, starting on record 11136, ending on 11140