NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 58652 | CVE-2007-6657 | PHP remote file inclusion vulnerability in source/includes/load_forum.php in Mihalism Multi Forum Host 3.0.x and earlier allows remote attackers to execute arbitrary PHP code via a URL in the mfh_root_path parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 54813 | CVE-2007-2649 | Deutsche Telekom (T-com) Speedport W 700v uses JavaScript delays for invalid authentication attempts to the CGI script, which allows remote attackers to bypass the delays and conduct brute-force attacks via direct calls to the authentication CGI script. | 2 | 7.8 | High | 2017-01-07 | 2008-11-15 | View | |
| 55581 | CVE-2007-3429 | Unrestricted file upload vulnerability in signup.php in e107 0.7.8 and earlier, when photograph upload is enabled, allows remote attackers to upload and execute arbitrary PHP code via a filename with a double extension such as .php.jpg. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56605 | CVE-2007-4482 | Cross-site scripting (XSS) vulnerability in index.php in the Pool 1.0.7 theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF). | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57117 | CVE-2007-5029 | Dibbler 0.6.0 does not verify that certain length parameters are appropriate for buffer sizes, which allows remote attackers to trigger a buffer over-read and cause a denial of service (daemon crash), as demonstrated by incorrect behavior of the TSrvMsg constructor in SrvMessages/SrvMsg.cpp when (1) reading the option code and option length and (2) parsing options. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 2309 of 17672, showing 5 records out of 88360 total, starting on record 11541, ending on 11545