NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52250  CVE-2007-0014  ChainKey Java Code Protection allows attackers to decompile Java class files via a Java class loader with a modified defineClass method that saves the bytecode to a file before it is passed to the JVM.  4.4  Medium  2017-01-07  2008-11-15  View
56602  CVE-2007-4479  Cross-site scripting (XSS) vulnerability in search.html in Search Engine Builder allows remote attackers to inject arbitrary web script or HTML via the searWords parameter.    4.3  Medium  2017-01-07  2008-11-15  View
57114  CVE-2007-5026  dBlog CMS, probably 2.0, stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing an admin password hash via a direct request for dblog.mdb.    Medium  2017-01-07  2008-11-15  View
58394  CVE-2007-6399  index.php in Flat PHP Board 1.2 and earlier allows remote authenticated users to obtain the password for the current user account by reading the password parameter value in the HTML source for the page generated by a profile action.    6.5  Medium  2017-01-07  2008-11-15  View
53019  CVE-2007-0802  Mozilla Firefox 2.0.0.1 allows remote attackers to bypass the Phishing Protection mechanism by adding certain characters to the end of the domain name, as demonstrated by the "." and "/" characters, which is not caught by the Phishing List blacklist filter.    6.4  Medium  2017-01-07  2008-11-15  View

Page 2306 of 17672, showing 5 records out of 88360 total, starting on record 11526, ending on 11530

Actions