NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58652  CVE-2007-6657  PHP remote file inclusion vulnerability in source/includes/load_forum.php in Mihalism Multi Forum Host 3.0.x and earlier allows remote attackers to execute arbitrary PHP code via a URL in the mfh_root_path parameter.    7.5  High  2017-01-07  2008-11-15  View
54813  CVE-2007-2649  Deutsche Telekom (T-com) Speedport W 700v uses JavaScript delays for invalid authentication attempts to the CGI script, which allows remote attackers to bypass the delays and conduct brute-force attacks via direct calls to the authentication CGI script.    7.8  High  2017-01-07  2008-11-15  View
55581  CVE-2007-3429  Unrestricted file upload vulnerability in signup.php in e107 0.7.8 and earlier, when photograph upload is enabled, allows remote attackers to upload and execute arbitrary PHP code via a filename with a double extension such as .php.jpg.    6.8  Medium  2017-01-07  2008-11-15  View
56605  CVE-2007-4482  Cross-site scripting (XSS) vulnerability in index.php in the Pool 1.0.7 theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).    4.3  Medium  2017-01-07  2008-11-15  View
57117  CVE-2007-5029  Dibbler 0.6.0 does not verify that certain length parameters are appropriate for buffer sizes, which allows remote attackers to trigger a buffer over-read and cause a denial of service (daemon crash), as demonstrated by incorrect behavior of the TSrvMsg constructor in SrvMessages/SrvMsg.cpp when (1) reading the option code and option length and (2) parsing options.    Medium  2017-01-07  2008-11-15  View

Page 2309 of 17672, showing 5 records out of 88360 total, starting on record 11541, ending on 11545

Actions