NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
54808  CVE-2007-2644  A certain ActiveX control in Morovia Barcode ActiveX Professional 3.3.1304 allows remote attackers to overwrite arbitrary files by calling the Save method with an arbitrary filename.    9.4  High  2017-01-07  2008-11-15  View
55064  CVE-2007-2904  Cross-site scripting (XSS) vulnerability in Sun Java System Messaging Server 6.0 through 6.3, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly a related issue to CVE-2006-5653.    4.3  Medium  2017-01-07  2008-11-15  View
55576  CVE-2007-3424  The moveim function in cgi-bin/cgi-lib/instantmessage.pl in web-app.org WebAPP before 0.9.9.7 uses the tocat parameter as a subdirectory name when moving an instant message, which has unknown impact and remote attack vectors.    7.5  High  2017-01-07  2008-11-15  View
58392  CVE-2007-6397  Multiple directory traversal vulnerabilities in index.php in Flat PHP Board 1.2 and earlier allow remote attackers to (1) create arbitrary files via a .. (dot dot) in the username parameter when registering a user account, and (2) read arbitrary PHP files via a .. (dot dot) in (a) the topic parameter in a topic action or (b) the username parameter in a viewprofile action.    Medium  2017-01-07  2008-11-15  View
58648  CVE-2007-6653  Directory traversal vulnerability in download.php in Mihalism Multi Host 2.0.7 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.    Medium  2017-01-07  2008-11-15  View

Page 2304 of 17672, showing 5 records out of 88360 total, starting on record 11516, ending on 11520

Actions