NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58709  CVE-2007-6715  Mozilla Firefox allows remote attackers to cause a denial of service (crash) via crafted image, as demonstrated by the zzuf lol-firefox.gif test case.    4.3  Medium  2017-01-07  2008-11-15  View
52310  CVE-2007-0078  BattleBlog stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/blankmaster.mdb.    Medium  2017-01-07  2008-11-15  View
52566  CVE-2007-0339  SQL injection vulnerability in index.php (aka the login form) in Scriptme SMe FileMailer 1.21 allows remote attackers to execute arbitrary SQL commands via the Password field (ps parameter). NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-07  2008-11-15  View
52311  CVE-2007-0079  rblog stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) data/admin.mdb or (2) data/rblog.mdb.    7.8  High  2017-01-07  2008-11-15  View
53079  CVE-2007-0863  ** DISPUTED ** PHP remote file inclusion vulnerability in Trevorchan 0.7 and earlier allows remote attackers to execute arbitrary code via the tc_config[rootdir] parameter to (1) upgrade.php, (2) paint_save.php, (3) menu.php, (4) manage.php, and (5) banned.php. NOTE: his issue has been disputed by reliable third parties, who state that the variable is set before use in config.php.    10  High  2017-01-07  2008-11-15  View

Page 2366 of 17672, showing 5 records out of 88360 total, starting on record 11826, ending on 11830

Actions