NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55328  CVE-2007-3174  Cross-site scripting (XSS) vulnerability in auth.w2b in W2B Online Banking allows remote attackers to inject arbitrary web script or HTML via the adtype parameter, a different vector than CVE-2006-1980.    4.3  Medium  2017-01-07  2008-11-15  View
55584  CVE-2007-3432  Unrestricted file upload vulnerability in admin/images.php in Pluxml 0.3.1 allows remote attackers to upload and execute arbitrary PHP code via a .jpg filename.    7.5  High  2017-01-07  2008-11-15  View
55840  CVE-2007-3691  Multiple SQL injection vulnerabilities in changePW.php in AV Tutorial Script (avtutorial) 1.0, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) userid parameters, a different issue than CVE-2007-3630.    6.8  Medium  2017-01-07  2008-11-15  View
56096  CVE-2007-3960  Multiple unspecified vulnerabilities in IBM WebSphere Application Server (WAS) before Fix Pack 21 (6.0.2.21) have unknown impact and attack vectors, aka (1) PK33799, or (2) a "Potential security exposure" in the Samples component (PK40213).    9.3  High  2017-01-07  2011-03-07  View
56352  CVE-2007-4223  Dbgv.sys in Microsoft Sysinternals DebugView before 4.72 provides an unspecified mechanism for copying data into kernel memory, which allows local users to gain privileges via unspecified vectors.    10  High  2017-01-07  2011-03-07  View

Page 2231 of 17672, showing 5 records out of 88360 total, starting on record 11151, ending on 11155

Actions