NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 54590 | CVE-2007-2423 | Cross-site scripting (XSS) vulnerability in index.php in MoinMoin 1.5.7 allows remote attackers to inject arbitrary web script or HTML via the do parameter in an AttachFile action, a different vulnerability than CVE-2007-0857. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5.8 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 55102 | CVE-2007-2943 | PHP remote file inclusion vulnerability in class/class.php in Webavis 0.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the root parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 55614 | CVE-2007-3462 | Cross-site request forgery (CSRF) vulnerability in Check Point SofaWare Safe@Office, with firmware before Embedded NGX 7.0.45 GA, allows remote attackers to execute commands as arbitrary users, and disable firewalling of the protected network. | 2 | 6 | Medium | 2017-01-07 | 2012-11-05 | View | |
| 56894 | CVE-2007-4781 | administrator/index.php in the installer component (com_installer) in Joomla! 1.5 Beta1, Beta2, and RC1 allows remote authenticated administrators to upload arbitrary files to tmp/ via the "Upload Package File" functionality, which is accessible when com_installer is the value of the option parameter. | 2 | 6.6 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57662 | CVE-2007-5597 | The hook_comments API in Drupal 4.7.x before 4.7.8 and 5.x before 5.3 does not pass publication status, which might allow attackers to bypass access restrictions and trigger e-mail with unpublished comments from some modules, as demonstrated by (1) Organic groups and (2) Subscriptions. | 2 | 4.3 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 2262 of 17672, showing 5 records out of 88360 total, starting on record 11306, ending on 11310