NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54590  CVE-2007-2423  Cross-site scripting (XSS) vulnerability in index.php in MoinMoin 1.5.7 allows remote attackers to inject arbitrary web script or HTML via the do parameter in an AttachFile action, a different vulnerability than CVE-2007-0857. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    5.8  Medium  2017-01-07  2008-11-13  View
55102  CVE-2007-2943  PHP remote file inclusion vulnerability in class/class.php in Webavis 0.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the root parameter.    6.8  Medium  2017-01-07  2011-03-07  View
55614  CVE-2007-3462  Cross-site request forgery (CSRF) vulnerability in Check Point SofaWare Safe@Office, with firmware before Embedded NGX 7.0.45 GA, allows remote attackers to execute commands as arbitrary users, and disable firewalling of the protected network.    Medium  2017-01-07  2012-11-05  View
56894  CVE-2007-4781  administrator/index.php in the installer component (com_installer) in Joomla! 1.5 Beta1, Beta2, and RC1 allows remote authenticated administrators to upload arbitrary files to tmp/ via the "Upload Package File" functionality, which is accessible when com_installer is the value of the option parameter.    6.6  Medium  2017-01-07  2008-11-15  View
57662  CVE-2007-5597  The hook_comments API in Drupal 4.7.x before 4.7.8 and 5.x before 5.3 does not pass publication status, which might allow attackers to bypass access restrictions and trigger e-mail with unpublished comments from some modules, as demonstrated by (1) Organic groups and (2) Subscriptions.    4.3  Medium  2017-01-07  2011-03-07  View

Page 2262 of 17672, showing 5 records out of 88360 total, starting on record 11306, ending on 11310

Actions