NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
57874  CVE-2007-5823  Directory traversal vulnerability in forum.php in Ben Ng Scribe 0.2 and earlier allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the username parameter in a Register action.    7.5  High  2017-01-07  2008-11-15  View
58642  CVE-2007-6647  SQL injection vulnerability in index.php in w-Agora 4.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter.    7.5  High  2017-01-07  2008-11-15  View
53011  CVE-2007-0794  ** DISPUTED ** SQL injection vulnerability in inc/common.php in GlobalMegaCorp dvddb 0.6 allows remote attackers to execute arbitrary SQL commands via the user parameter. NOTE: this issue has been disputed by a reliable third party, who states that inc/common.php only contains function definitions.    7.5  High  2017-01-07  2008-11-15  View
54803  CVE-2007-2639  Directory traversal vulnerability in TFTPdWin 0.4.2 allows remote attackers to read or modify arbitrary files outside the TFTP root via unspecified vectors.    10  High  2017-01-07  2008-11-15  View
55571  CVE-2007-3419  The editprofile3 function in cgi-bin/cgi-lib/user.pl in web-app.org WebAPP before 0.9.9.7 does not properly check the (1) themes.dat, (2) languages.dat, (3) profession.dat, (4) gen.dat, (5) marstat.dat, (6) states.dat, and (7) ages.dat files before saving profile settings of members, which has unknown impact and remote attack vectors.    7.5  High  2017-01-07  2008-11-15  View

Page 2299 of 17672, showing 5 records out of 88360 total, starting on record 11491, ending on 11495

Actions