NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 55313 | CVE-2007-3159 | http.c in MiniWeb Http Server 0.8.x allows remote attackers to cause a denial of service (application crash) via a negative value in the Content-Length HTTP header. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 55569 | CVE-2007-3417 | Multiple cross-site scripting (XSS) vulnerabilities in cgi-bin/cgi-lib/search.pl in web-app.org WebAPP before 0.9.9.7 allow remote attackers to inject arbitrary web script or HTML via a search string, which is not sanitized when an HREF attribute is printed by the (1) process_search or (2) show_recent_searches function. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56337 | CVE-2007-4206 | Kaspersky Anti-Spam 3.0 MP1 before Critical Fix 2 (3.0.278.4) sets incorrect permissions for application files in certain upgrade scenarios, which might allow local users to gain privileges. | 2 | 4.4 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57105 | CVE-2007-5017 | Absolute path traversal vulnerability in a certain ActiveX control in the CYFT object in ft60.dll in Yahoo! Messenger 8.1.0.421 allows remote attackers to force a download, and create or overwrite arbitrary files via a full pathname in the second argument to the GetFile method. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58641 | CVE-2007-6646 | Multiple cross-site scripting (XSS) vulnerabilities in LiveCart 1.0.1, and possibly other versions before 1.1.0, allow remote attackers to inject arbitrary web script or HTML via (1) the return parameter to user/remindPassword, (2) the q parameter to the category script, (3) the return parameter to the order script, or (4) the email parameter to user/remindComplete. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 2297 of 17672, showing 5 records out of 88360 total, starting on record 11481, ending on 11485